{"cves":[{"id":"CVE-2016-3956","published":"2016-07-02T14:59:00","updated_at":"2025-08-25T22:01:45.623542+00:00","description":"\nThe CLI in npm before 2.15.1 and 3.x before 3.8.3, as used in Node.js 0.10\nbefore 0.10.44, 0.12 before 0.12.13, 4 before 4.4.2, and 5 before 5.10.0,\nincludes bearer tokens with arbitrary requests, which allows remote HTTP\nservers to obtain sensitive information by reading Authorization headers.","ubuntu_description":"\nIt was discovered that the npm command-line interface mishandled certain\nsensitive information. An attacker could use this vulnerability to collect\nauthentication information that could be used to impersonate other users.","notes":[],"codename":null,"priority":"medium","cvss3":7.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"NONE","availabilityImpact":"NONE","baseScore":7.5,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://nodejs.org/en/blog/vulnerability/npm-tokens-leak-march-2016/","https://github.com/npm/npm/issues/8380","http://www-01.ibm.com/support/docview.wss?uid=swg21980827","http://blog.npmjs.org/post/142036323955/fixing-a-bearer-token-vulnerability","https://ubuntu.com/security/notices/USN-4785-1","https://www.cve.org/CVERecord?id=CVE-2016-3956"],"bugs":[""],"patches":{"npm":["upstream: https://github.com/npm/npm/commit/fea8cc92cee02c720b58f95f14d315507ccad401","upstream: https://github.com/npm/npm/commit/f67ecad59e99a03e5aad8e93cd1a086ae087cb29"]},"tags":{},"packages":[{"name":"npm","source":"https://ubuntu.com/security/cve?package=npm","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=npm","debian":"https://tracker.debian.org/pkg/npm","statuses":[{"release_codename":"artful","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"3.8.3","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"3.8.3","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"3.8.3","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"zesty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"3.8.3","component":null,"pocket":"security"},{"release_codename":"bionic","status":"released","description":"3.5.2-0ubuntu4.1.18.04.1~esm1","component":null,"pocket":"esm-apps"},{"release_codename":"focal","status":"not-affected","description":"3.8.3","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"3.8.3","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"3.5.2-0ubuntu4.1.16.04.1~esm1","component":null,"pocket":"esm-apps"},{"release_codename":"groovy","status":"not-affected","description":"3.8.3","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"3.8.3","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"3.8.3","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"3.8.3","component":null,"pocket":"security"}]}],"notices_ids":["USN-4785-1"],"notices":[{"id":"USN-4785-1","title":"npm vulnerability","summary":"npm could be made to expose sensitive information.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2021-03-15T21:03:23.601698","description":"It was discovered that the npm command-line interface mishandled certain\nsensitive information. An attacker could use this vulnerability to collect\nauthentication information that could be used to impersonate other users.\n","is_hidden":false,"release_packages":{"bionic":[{"name":"npm","version":"3.5.2-0ubuntu4.1.18.04.1~esm1","description":"package manager for Node.js","is_source":true},{"name":"npm","version":"3.5.2-0ubuntu4.1.18.04.1~esm1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/npm","version_link":null,"pocket":"esm-apps"}],"xenial":[{"name":"npm","version":"3.5.2-0ubuntu4.1.16.04.1~esm1","description":"package manager for Node.js","is_source":true},{"name":"npm","version":"3.5.2-0ubuntu4.1.16.04.1~esm1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/npm","version_link":null,"pocket":"esm-apps"}]},"type":"USN","cves_ids":["CVE-2016-3956"]}]},{"id":"CVE-2016-5301","published":"2016-06-30T17:59:00","updated_at":"2025-08-25T22:06:18.398724+00:00","description":"\nThe parse_chunk_header function in libtorrent before 1.1.1 allows remote\nattackers to cause a denial of service (crash) via a crafted (1) HTTP\nresponse or possibly a (2) UPnP broadcast.","ubuntu_description":"\nIt was discovered that libtorrent improperly handles chunked headers. A\nremote Attacker could possibly use this to cause a crash resulting in a\ndenial of service.","notes":[],"codename":null,"priority":"medium","cvss3":7.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":7.5,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2016-5301","https://ubuntu.com/security/notices/USN-4790-1"],"bugs":["https://github.com/arvidn/libtorrent/issues/780","http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=826380"],"patches":{"libtorrent-rasterbar":["upstream: https://github.com/arvidn/libtorrent/pull/782"]},"tags":{},"packages":[{"name":"libtorrent-rasterbar","source":"https://ubuntu.com/security/cve?package=libtorrent-rasterbar","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libtorrent-rasterbar","debian":"https://tracker.debian.org/pkg/libtorrent-rasterbar","statuses":[{"release_codename":"artful","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"1.1.0-1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"1.1.0-1","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"1.1.0-1","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"1.1.0-1","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"1.1.0-1","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"1.1.0-1","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"0.15.10-1+deb7u1build0.12.04.1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"0.16.13-1ubuntu2.1+esm1","component":null,"pocket":"esm-infra"},{"release_codename":"upstream","status":"released","description":"1.1.0-1","component":null,"pocket":"security"},{"release_codename":"wily","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"1.0.7-1ubuntu0.1~esm1","component":null,"pocket":"esm-apps"},{"release_codename":"yakkety","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"zesty","status":"ignored","description":"end of life","component":null,"pocket":"security"}]}],"notices_ids":["USN-4790-1"],"notices":[{"id":"USN-4790-1","title":"libtorrent vulnerability","summary":"libtorrent could be made to crash if it received specially crafted\ninput.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2021-03-15T21:10:34.774802","description":"It was discovered that libtorrent incorrectly handled chunked headers.\nA remote attacker could possibly use this to cause a crash resulting in a\ndenial of service.\n","is_hidden":false,"release_packages":{"trusty":[{"name":"libtorrent-rasterbar","version":"0.16.13-1ubuntu2.1+esm1","description":"libtorrent-rasterbar","is_source":true},{"name":"python3-libtorrent","version":"0.16.13-1ubuntu2.1+esm1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/libtorrent-rasterbar","version_link":null,"pocket":"esm-infra"},{"name":"libtorrent-rasterbar7","version":"0.16.13-1ubuntu2.1+esm1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/libtorrent-rasterbar","version_link":null,"pocket":"esm-infra"},{"name":"libtorrent-rasterbar-doc","version":"0.16.13-1ubuntu2.1+esm1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libtorrent-rasterbar","version_link":null,"pocket":"esm-infra"},{"name":"libtorrent-rasterbar-dev","version":"0.16.13-1ubuntu2.1+esm1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libtorrent-rasterbar","version_link":null,"pocket":"esm-infra"},{"name":"python-libtorrent","version":"0.16.13-1ubuntu2.1+esm1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/libtorrent-rasterbar","version_link":null,"pocket":"esm-infra"}],"xenial":[{"name":"libtorrent-rasterbar","version":"1.0.7-1ubuntu0.1~esm1","description":"libtorrent-rasterbar","is_source":true},{"name":"libtorrent-rasterbar8","version":"1.0.7-1ubuntu0.1~esm1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/libtorrent-rasterbar","version_link":null,"pocket":"esm-apps"},{"name":"python3-libtorrent","version":"1.0.7-1ubuntu0.1~esm1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/libtorrent-rasterbar","version_link":null,"pocket":"esm-apps"},{"name":"libtorrent-rasterbar-doc","version":"1.0.7-1ubuntu0.1~esm1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libtorrent-rasterbar","version_link":null,"pocket":"esm-apps"},{"name":"libtorrent-rasterbar-dev","version":"1.0.7-1ubuntu0.1~esm1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libtorrent-rasterbar","version_link":null,"pocket":"esm-apps"},{"name":"python-libtorrent","version":"1.0.7-1ubuntu0.1~esm1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/libtorrent-rasterbar","version_link":null,"pocket":"esm-apps"}]},"type":"USN","cves_ids":["CVE-2016-5301"]}]},{"id":"CVE-2016-2141","published":"2016-06-30T16:59:00","updated_at":"2025-07-11T07:38:16.353330+00:00","description":"\nIt was found that JGroups did not require necessary headers for encrypt and\nauth protocols from new nodes joining the cluster. An attacker could use\nthis flaw to bypass security restrictions, and use this vulnerability to\nsend and receive messages within the cluster, leading to information\ndisclosure, message spoofing, or further possible attacks.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":9.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":9.8,"baseSeverity":"CRITICAL"}}},"status":"active","mitigation":"","references":["https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-2141","https://access.redhat.com/articles/2360521","https://www.cve.org/CVERecord?id=CVE-2016-2141"],"bugs":[""],"patches":{"libjgroups-java":[]},"tags":{},"packages":[{"name":"libjgroups-java","source":"https://ubuntu.com/security/cve?package=libjgroups-java","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libjgroups-java","debian":"https://tracker.debian.org/pkg/libjgroups-java","statuses":[{"release_codename":"xenial","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"questing","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"focal","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"impish","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"artful","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"bionic","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"eoan","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"groovy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"jammy","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"zesty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lunar","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"noble","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"mantic","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"oracular","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needed","component":null,"pocket":"security"},{"release_codename":"resolute","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"plucky","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2016-6132","published":"2016-06-30T00:00:00","updated_at":"2025-08-25T22:07:23.412732+00:00","description":"\nThe gdImageCreateFromTgaCtx function in the GD Graphics Library (aka libgd)\nbefore 2.2.3 allows remote attackers to cause a denial of service\n(out-of-bounds read) via a crafted TGA file.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"php uses the system libgd2"}],"codename":null,"priority":"low","cvss3":6.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":6.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["http://www.openwall.com/lists/oss-security/2016/06/30","https://ubuntu.com/security/notices/USN-3060-1","https://www.cve.org/CVERecord?id=CVE-2016-6132"],"bugs":["https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=829694","https://github.com/libgd/libgd/issues/247"],"patches":{"libgd2":["upstream: https://github.com/libgd/libgd/commit/ead349e99868303b37f5e6e9d9d680c9dc71ff8d","upstream: https://github.com/libgd/libgd/commit/0878ffde554d6094a357fc1e118321d2e9712d34","upstream: https://github.com/libgd/libgd/commit/981060efd6415ed9a08a6aa343e6e195bf65fb47","upstream: https://github.com/libgd/libgd/commit/bd0b820b8647feefcace20ae13856f6028c6a4dd","upstream: https://github.com/libgd/libgd/commit/ff0234f4da6d1116c0baa66eebd8497526f7a5d9","upstream: https://github.com/libgd/libgd/commit/4d8f54bd0bcede37138db29e371611f334092fc2"],"php5":[],"php7.0":[]},"tags":{},"packages":[{"name":"libgd2","source":"https://ubuntu.com/security/cve?package=libgd2","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libgd2","debian":"https://tracker.debian.org/pkg/libgd2","statuses":[{"release_codename":"precise","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"2.1.0-3ubuntu0.3","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"2.1.1-4ubuntu0.16.04.3","component":null,"pocket":"security"}]},{"name":"php5","source":"https://ubuntu.com/security/cve?package=php5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=php5","debian":"https://tracker.debian.org/pkg/php5","statuses":[{"release_codename":"precise","status":"not-affected","description":"uses system gd","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"uses system gd","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"not-affected","description":"uses system gd","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"php7.0","source":"https://ubuntu.com/security/cve?package=php7.0","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=php7.0","debian":"https://tracker.debian.org/pkg/php7.0","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"uses system gd","component":null,"pocket":"security"}]}],"notices_ids":["USN-3060-1"],"notices":[{"id":"USN-3060-1","title":"GD library vulnerabilities","summary":"The GD library could be made to crash or run programs if it processed a\nspecially crafted image file.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2016-08-10T17:05:02.151020","description":"It was discovered that the GD library incorrectly handled certain malformed\nTGA images. If a user or automated system were tricked into processing a\nspecially crafted TGA image, an attacker could cause a denial of service.\n(CVE-2016-6132, CVE-2016-6214)\n\nIt was discovered that the GD library incorrectly handled memory when using\ngdImageScale(). A remote attacker could possibly use this issue to cause a\ndenial of service or possibly execute arbitrary code. (CVE-2016-6207)\n","is_hidden":false,"release_packages":{"trusty":[{"name":"libgd2","version":"2.1.0-3ubuntu0.3","description":"GD Graphics Library","is_source":true},{"name":"libgd-dev","version":"2.1.0-3ubuntu0.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libgd2","version_link":"https://launchpad.net/ubuntu/+source/libgd2/2.1.0-3ubuntu0.3","pocket":"security"},{"name":"libgd-tools","version":"2.1.0-3ubuntu0.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libgd2","version_link":"https://launchpad.net/ubuntu/+source/libgd2/2.1.0-3ubuntu0.3","pocket":"security"},{"name":"libgd2-noxpm-dev","version":"2.1.0-3ubuntu0.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libgd2","version_link":"https://launchpad.net/ubuntu/+source/libgd2/2.1.0-3ubuntu0.3","pocket":"security"},{"name":"libgd2-xpm-dev","version":"2.1.0-3ubuntu0.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libgd2","version_link":"https://launchpad.net/ubuntu/+source/libgd2/2.1.0-3ubuntu0.3","pocket":"security"},{"name":"libgd3","version":"2.1.0-3ubuntu0.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/libgd2","version_link":"https://launchpad.net/ubuntu/+source/libgd2/2.1.0-3ubuntu0.3","pocket":"security"}],"xenial":[{"name":"libgd2","version":"2.1.1-4ubuntu0.16.04.3","description":"GD Graphics Library","is_source":true},{"name":"libgd-dev","version":"2.1.1-4ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libgd2","version_link":"https://launchpad.net/ubuntu/+source/libgd2/2.1.1-4ubuntu0.16.04.3","pocket":"security"},{"name":"libgd-tools","version":"2.1.1-4ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libgd2","version_link":"https://launchpad.net/ubuntu/+source/libgd2/2.1.1-4ubuntu0.16.04.3","pocket":"security"},{"name":"libgd3","version":"2.1.1-4ubuntu0.16.04.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/libgd2","version_link":"https://launchpad.net/ubuntu/+source/libgd2/2.1.1-4ubuntu0.16.04.3","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2016-6132","CVE-2016-6207","CVE-2016-6214"]}]},{"id":"CVE-2016-6128","published":"2016-06-30T00:00:00","updated_at":"2025-08-25T22:07:17.976843+00:00","description":"\nThe gdImageCropThreshold function in gd_crop.c in the GD Graphics Library\n(aka libgd) before 2.2.3, as used in PHP before 7.0.9, allows remote\nattackers to cause a denial of service (application crash) via an invalid\ncolor index.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"php uses the system libgd2\nintroduced in 2.1.0"}],"codename":null,"priority":"medium","cvss3":7.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":7.5,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-3030-1","https://www.cve.org/CVERecord?id=CVE-2016-6128"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=829062","https://bugs.php.net/bug.php?id=72494"],"patches":{"libgd2":["upstream: https://github.com/libgd/libgd/compare/3fe0a7128bac5000fdcfab888bd2a75ec0c9447d...fd623025505e87bba7ec8555eeb72dae4fb0afd"],"php5":[],"php7.0":[]},"tags":{},"packages":[{"name":"libgd2","source":"https://ubuntu.com/security/cve?package=libgd2","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libgd2","debian":"https://tracker.debian.org/pkg/libgd2","statuses":[{"release_codename":"precise","status":"not-affected","description":"2.0.36~rc1~dfsg-6ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"2.1.0-3ubuntu0.2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"released","description":"2.1.1-4ubuntu0.15.10.2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"2.1.1-4ubuntu0.16.04.2","component":null,"pocket":"security"}]},{"name":"php5","source":"https://ubuntu.com/security/cve?package=php5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=php5","debian":"https://tracker.debian.org/pkg/php5","statuses":[{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"uses system gd","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"uses system gd","component":null,"pocket":"security"},{"release_codename":"wily","status":"not-affected","description":"uses system gd","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"php7.0","source":"https://ubuntu.com/security/cve?package=php7.0","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=php7.0","debian":"https://tracker.debian.org/pkg/php7.0","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"uses system gd","component":null,"pocket":"security"}]}],"notices_ids":["USN-3030-1"],"notices":[{"id":"USN-3030-1","title":"GD library vulnerabilities","summary":"The GD library could be made to crash or run programs if it processed a\nspecially crafted image file.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2016-07-11T16:47:45.454217","description":"It was discovered that the GD library incorrectly handled memory when using\ngdImageScaleTwoPass(). A remote attacker could possibly use this issue to\ncause a denial of service. This issue only affected Ubuntu 14.04 LTS.\n(CVE-2013-7456)\n\nIt was discovered that the GD library incorrectly handled certain malformed\nXBM images. If a user or automated system were tricked into processing a\nspecially crafted XBM image, an attacker could cause a denial of service.\nThis issue only affected Ubuntu 14.04 LTS, Ubuntu 15.10 and Ubuntu 16.04\nLTS. (CVE-2016-5116)\n\nIt was discovered that the GD library incorrectly handled memory when using\n_gd2GetHeader(). A remote attacker could possibly use this issue to cause a\ndenial of service or possibly execute arbitrary code. (CVE-2016-5766)\n\nIt was discovered that the GD library incorrectly handled certain color\nindexes. A remote attacker could possibly use this issue to cause a denial\nof service. This issue only affected Ubuntu 14.04 LTS, Ubuntu 15.10 and\nUbuntu 16.04 LTS. (CVE-2016-6128)\n\nIt was discovered that the GD library incorrectly handled memory when\nencoding a GIF image. A remote attacker could possibly use this issue to\ncause a denial of service. (CVE-2016-6161)\n","is_hidden":false,"release_packages":{"precise":[{"name":"libgd2","version":"2.0.36~rc1~dfsg-6ubuntu2.2","description":"GD Graphics Library","is_source":true},{"name":"libgd2-noxpm","version":"2.0.36~rc1~dfsg-6ubuntu2.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/libgd2","version_link":"https://launchpad.net/ubuntu/+source/libgd2/2.0.36~rc1~dfsg-6ubuntu2.2"},{"name":"libgd2-xpm","version":"2.0.36~rc1~dfsg-6ubuntu2.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/libgd2","version_link":"https://launchpad.net/ubuntu/+source/libgd2/2.0.36~rc1~dfsg-6ubuntu2.2"}],"trusty":[{"name":"libgd2","version":"2.1.0-3ubuntu0.2","description":"GD Graphics Library","is_source":true},{"name":"libgd-dev","version":"2.1.0-3ubuntu0.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libgd2","version_link":"https://launchpad.net/ubuntu/+source/libgd2/2.1.0-3ubuntu0.2","pocket":"security"},{"name":"libgd-tools","version":"2.1.0-3ubuntu0.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libgd2","version_link":"https://launchpad.net/ubuntu/+source/libgd2/2.1.0-3ubuntu0.2","pocket":"security"},{"name":"libgd2-noxpm-dev","version":"2.1.0-3ubuntu0.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libgd2","version_link":"https://launchpad.net/ubuntu/+source/libgd2/2.1.0-3ubuntu0.2","pocket":"security"},{"name":"libgd2-xpm-dev","version":"2.1.0-3ubuntu0.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libgd2","version_link":"https://launchpad.net/ubuntu/+source/libgd2/2.1.0-3ubuntu0.2","pocket":"security"},{"name":"libgd3","version":"2.1.0-3ubuntu0.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/libgd2","version_link":"https://launchpad.net/ubuntu/+source/libgd2/2.1.0-3ubuntu0.2","pocket":"security"}],"wily":[{"name":"libgd2","version":"2.1.1-4ubuntu0.15.10.2","description":"GD Graphics Library","is_source":true},{"name":"libgd3","version":"2.1.1-4ubuntu0.15.10.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/libgd2","version_link":"https://launchpad.net/ubuntu/+source/libgd2/2.1.1-4ubuntu0.15.10.2"}],"xenial":[{"name":"libgd2","version":"2.1.1-4ubuntu0.16.04.2","description":"GD Graphics Library","is_source":true},{"name":"libgd-dev","version":"2.1.1-4ubuntu0.16.04.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libgd2","version_link":"https://launchpad.net/ubuntu/+source/libgd2/2.1.1-4ubuntu0.16.04.2","pocket":"security"},{"name":"libgd-tools","version":"2.1.1-4ubuntu0.16.04.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libgd2","version_link":"https://launchpad.net/ubuntu/+source/libgd2/2.1.1-4ubuntu0.16.04.2","pocket":"security"},{"name":"libgd3","version":"2.1.1-4ubuntu0.16.04.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/libgd2","version_link":"https://launchpad.net/ubuntu/+source/libgd2/2.1.1-4ubuntu0.16.04.2","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2013-7456","CVE-2016-5116","CVE-2016-5766","CVE-2016-6128","CVE-2016-6161"]}]},{"id":"CVE-2016-5875","published":"2016-06-30T00:00:00","updated_at":"2025-08-04T19:24:36.374856+00:00","description":"\nRejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs:\nCVE-2016-5314. Reason: This candidate is a reservation duplicate of\nCVE-2016-5314. Notes: All CVE users should reference CVE-2016-5314 instead\nof this candidate. All references and descriptions in this candidate have\nbeen removed to prevent accidental usage","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"possible dupe and same patch as CVE-2016-5314 and CVE-2016-5320"}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.talosintelligence.com/reports/TALOS-2016-0205","https://ubuntu.com/security/notices/USN-3212-1","https://www.cve.org/CVERecord?id=CVE-2016-5875"],"bugs":["https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=830700"],"patches":{"tiff":["vendor: https://git.centos.org/blob/rpms!libtiff.git/1ad9335dc0c1325262c62842eda01476243ec821/SOURCES!libtiff-CVE-2016-5320.patch","upstream: https://github.com/vadz/libtiff/commit/391e77fcd217e78b2c51342ac3ddb7100ecacdd2"]},"tags":{},"packages":[{"name":"tiff","source":"https://ubuntu.com/security/cve?package=tiff","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=tiff","debian":"https://tracker.debian.org/pkg/tiff","statuses":[{"release_codename":"artful","status":"not-affected","description":"4.0.7-1","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"4.0.3-7ubuntu0.6","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.0.7","component":null,"pocket":"security"},{"release_codename":"wily","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"4.0.6-1ubuntu0.1","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"not-affected","description":"4.0.6-2","component":null,"pocket":"security"},{"release_codename":"zesty","status":"not-affected","description":"4.0.7-1","component":null,"pocket":"security"}]}],"notices_ids":["USN-3212-1"],"notices":[{"id":"USN-3212-1","title":"LibTIFF vulnerabilities","summary":"LibTIFF could be made to crash or run programs as your login if it opened a\nspecially crafted file.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2017-02-27T18:04:10.120804","description":"It was discovered that LibTIFF incorrectly handled certain malformed\nimages. If a user or automated system were tricked into opening a specially\ncrafted image, a remote attacker could crash the application, leading to a\ndenial of service, or possibly execute arbitrary code with user privileges.\n","is_hidden":false,"release_packages":{"trusty":[{"name":"tiff","version":"4.0.3-7ubuntu0.6","description":"Tag Image File Format (TIFF) library","is_source":true},{"name":"libtiff-doc","version":"4.0.3-7ubuntu0.6","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/tiff","version_link":"https://launchpad.net/ubuntu/+source/tiff/4.0.3-7ubuntu0.6","pocket":"security"},{"name":"libtiff-opengl","version":"4.0.3-7ubuntu0.6","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/tiff","version_link":"https://launchpad.net/ubuntu/+source/tiff/4.0.3-7ubuntu0.6","pocket":"security"},{"name":"libtiff-tools","version":"4.0.3-7ubuntu0.6","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/tiff","version_link":"https://launchpad.net/ubuntu/+source/tiff/4.0.3-7ubuntu0.6","pocket":"security"},{"name":"libtiff4-dev","version":"4.0.3-7ubuntu0.6","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/tiff","version_link":"https://launchpad.net/ubuntu/+source/tiff/4.0.3-7ubuntu0.6","pocket":"security"},{"name":"libtiff5","version":"4.0.3-7ubuntu0.6","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/tiff","version_link":"https://launchpad.net/ubuntu/+source/tiff/4.0.3-7ubuntu0.6","pocket":"security"},{"name":"libtiff5-alt-dev","version":"4.0.3-7ubuntu0.6","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/tiff","version_link":"https://launchpad.net/ubuntu/+source/tiff/4.0.3-7ubuntu0.6","pocket":"security"},{"name":"libtiff5-dev","version":"4.0.3-7ubuntu0.6","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/tiff","version_link":"https://launchpad.net/ubuntu/+source/tiff/4.0.3-7ubuntu0.6","pocket":"security"},{"name":"libtiffxx5","version":"4.0.3-7ubuntu0.6","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/tiff","version_link":"https://launchpad.net/ubuntu/+source/tiff/4.0.3-7ubuntu0.6","pocket":"security"}],"xenial":[{"name":"tiff","version":"4.0.6-1ubuntu0.1","description":"Tag Image File Format (TIFF) library","is_source":true},{"name":"libtiff-doc","version":"4.0.6-1ubuntu0.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/tiff","version_link":"https://launchpad.net/ubuntu/+source/tiff/4.0.6-1ubuntu0.1","pocket":"security"},{"name":"libtiff-opengl","version":"4.0.6-1ubuntu0.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/tiff","version_link":"https://launchpad.net/ubuntu/+source/tiff/4.0.6-1ubuntu0.1","pocket":"security"},{"name":"libtiff-tools","version":"4.0.6-1ubuntu0.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/tiff","version_link":"https://launchpad.net/ubuntu/+source/tiff/4.0.6-1ubuntu0.1","pocket":"security"},{"name":"libtiff5","version":"4.0.6-1ubuntu0.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/tiff","version_link":"https://launchpad.net/ubuntu/+source/tiff/4.0.6-1ubuntu0.1","pocket":"security"},{"name":"libtiff5-dev","version":"4.0.6-1ubuntu0.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/tiff","version_link":"https://launchpad.net/ubuntu/+source/tiff/4.0.6-1ubuntu0.1","pocket":"security"},{"name":"libtiffxx5","version":"4.0.6-1ubuntu0.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/tiff","version_link":"https://launchpad.net/ubuntu/+source/tiff/4.0.6-1ubuntu0.1","pocket":"security"}],"yakkety":[{"name":"tiff","version":"4.0.6-2ubuntu0.1","description":"Tag Image File Format (TIFF) library","is_source":true},{"name":"libtiff-tools","version":"4.0.6-2ubuntu0.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/tiff","version_link":"https://launchpad.net/ubuntu/+source/tiff/4.0.6-2ubuntu0.1"},{"name":"libtiff5","version":"4.0.6-2ubuntu0.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/tiff","version_link":"https://launchpad.net/ubuntu/+source/tiff/4.0.6-2ubuntu0.1"}]},"type":"USN","cves_ids":["CVE-2015-7554","CVE-2015-8668","CVE-2016-10092","CVE-2016-10093","CVE-2016-10094","CVE-2016-3622","CVE-2016-3623","CVE-2016-3624","CVE-2016-3632","CVE-2016-3658","CVE-2016-3945","CVE-2016-3990","CVE-2016-3991","CVE-2016-5314","CVE-2016-5315","CVE-2016-5316","CVE-2016-5317","CVE-2016-5320","CVE-2016-5321","CVE-2016-5322","CVE-2016-5323","CVE-2016-5652","CVE-2016-5875","CVE-2016-6223","CVE-2016-8331","CVE-2016-9273","CVE-2016-9297","CVE-2016-9448","CVE-2016-9453","CVE-2016-9532","CVE-2016-9533","CVE-2016-9534","CVE-2016-9535","CVE-2016-9536","CVE-2016-9537","CVE-2016-9538","CVE-2016-9539","CVE-2016-9540","CVE-2017-5225"]}]},{"id":"CVE-2016-3189","published":"2016-06-30T00:00:00","updated_at":"2025-08-25T21:59:31.081606+00:00","description":"\nUse-after-free vulnerability in bzip2recover in bzip2 1.0.6 allows remote\nattackers to cause a denial of service (crash) via a crafted bzip2 file,\nrelated to block ends set to before the start of the block.","ubuntu_description":"","notes":[{"author":"msalvatore","note":"Fix for xenial and trusty can be found in 10.0.6-8.1"}],"codename":null,"priority":"low","cvss3":6.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":6.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://marc.info/?l=oss-security&m=146642106322396&w=2","https://ubuntu.com/security/notices/USN-4038-1","https://ubuntu.com/security/notices/USN-4038-2","https://www.cve.org/CVERecord?id=CVE-2016-3189"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=827744","https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-3189"],"patches":{"bzip2":["distro: https://bugzilla.redhat.com/attachment.cgi?id=1169843&action=diff"]},"tags":{},"packages":[{"name":"bzip2","source":"https://ubuntu.com/security/cve?package=bzip2","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=bzip2","debian":"https://tracker.debian.org/pkg/bzip2","statuses":[{"release_codename":"artful","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"1.0.6-8.1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"1.0.6-8.1","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"1.0.6-8.1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"1.0.6-5ubuntu0.1~esm1","component":null,"pocket":"esm-infra"},{"release_codename":"upstream","status":"released","description":"1.0.6-8.1","component":null,"pocket":"security"},{"release_codename":"wily","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"1.0.6-8ubuntu0.1","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"zesty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"}]}],"notices_ids":["USN-4038-1","USN-4038-2"],"notices":[{"id":"USN-4038-1","title":"bzip2 vulnerabilities","summary":"Several security issues were fixed in bzip2.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2019-06-26T12:01:55.434655","description":"Aladdin Mubaied discovered that bzip2 incorrectly handled certain files.\nAn attacker could possibly use this issue to cause a denial of service.\nThis issue only affected Ubuntu 16.04 LTS. (CVE-2016-3189)\n\nIt was discovered that bzip2 incorrectly handled certain files.\nAn attacker could possibly use this issue to execute arbitrary code.\n(CVE-2019-12900)\n","is_hidden":false,"release_packages":{"bionic":[{"name":"bzip2","version":"1.0.6-8.1ubuntu0.1","description":"high-quality block-sorting file compressor - utilities","is_source":true},{"name":"bzip2","version":"1.0.6-8.1ubuntu0.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-8.1ubuntu0.1","pocket":"security"},{"name":"bzip2-doc","version":"1.0.6-8.1ubuntu0.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-8.1ubuntu0.1","pocket":"security"},{"name":"libbz2-1.0","version":"1.0.6-8.1ubuntu0.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-8.1ubuntu0.1","pocket":"security"},{"name":"libbz2-dev","version":"1.0.6-8.1ubuntu0.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-8.1ubuntu0.1","pocket":"security"}],"cosmic":[{"name":"bzip2","version":"1.0.6-9ubuntu0.18.10","description":"high-quality block-sorting file compressor - utilities","is_source":true},{"name":"bzip2","version":"1.0.6-9ubuntu0.18.10","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-9ubuntu0.18.10"},{"name":"bzip2-doc","version":"1.0.6-9ubuntu0.18.10","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-9ubuntu0.18.10"},{"name":"libbz2-1.0","version":"1.0.6-9ubuntu0.18.10","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-9ubuntu0.18.10"},{"name":"libbz2-dev","version":"1.0.6-9ubuntu0.18.10","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-9ubuntu0.18.10"}],"disco":[{"name":"bzip2","version":"1.0.6-9ubuntu0.19.04","description":"high-quality block-sorting file compressor - utilities","is_source":true},{"name":"bzip2","version":"1.0.6-9ubuntu0.19.04","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-9ubuntu0.19.04"},{"name":"bzip2-doc","version":"1.0.6-9ubuntu0.19.04","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-9ubuntu0.19.04"},{"name":"libbz2-1.0","version":"1.0.6-9ubuntu0.19.04","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-9ubuntu0.19.04"},{"name":"libbz2-dev","version":"1.0.6-9ubuntu0.19.04","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-9ubuntu0.19.04"}],"xenial":[{"name":"bzip2","version":"1.0.6-8ubuntu0.1","description":"high-quality block-sorting file compressor - utilities","is_source":true},{"name":"bzip2","version":"1.0.6-8ubuntu0.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-8ubuntu0.1","pocket":"security"},{"name":"bzip2-doc","version":"1.0.6-8ubuntu0.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-8ubuntu0.1","pocket":"security"},{"name":"libbz2-1.0","version":"1.0.6-8ubuntu0.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-8ubuntu0.1","pocket":"security"},{"name":"libbz2-dev","version":"1.0.6-8ubuntu0.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-8ubuntu0.1","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2016-3189","CVE-2019-12900"]},{"id":"USN-4038-2","title":"bzip2 vulnerabilities","summary":"Several security issues were fixed in bzip2.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2019-06-26T13:58:15.531924","description":"USN-4038-1 fixed several vulnerabilities in bzip2. This update provides\nthe corresponding update for Ubuntu 12.04 ESM and Ubuntu 14.04 ESM.\n\nOriginal advisory details:\n\n Aladdin Mubaied discovered that bzip2 incorrectly handled certain files.\n An attacker could possibly use this issue to cause a denial of service.\n (CVE-2016-3189)\n\n It was discovered that bzip2 incorrectly handled certain files.\n An attacker could possibly use this issue to execute arbitrary code.\n (CVE-2019-12900)\n","is_hidden":false,"release_packages":{"precise":[{"name":"bzip2","version":"1.0.6-1ubuntu0.1","description":"high-quality block-sorting file compressor - utilities","is_source":true},{"name":"bzip2","version":"1.0.6-1ubuntu0.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-1ubuntu0.1"},{"name":"bzip2-doc","version":"1.0.6-1ubuntu0.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-1ubuntu0.1"},{"name":"lib32bz2-1.0","version":"1.0.6-1ubuntu0.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-1ubuntu0.1"},{"name":"lib32bz2-dev","version":"1.0.6-1ubuntu0.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-1ubuntu0.1"},{"name":"lib64bz2-1.0","version":"1.0.6-1ubuntu0.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-1ubuntu0.1"},{"name":"libbz2-dev","version":"1.0.6-1ubuntu0.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-1ubuntu0.1"},{"name":"lib64bz2-dev","version":"1.0.6-1ubuntu0.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-1ubuntu0.1"},{"name":"libbz2-1.0","version":"1.0.6-1ubuntu0.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-1ubuntu0.1"}],"trusty":[{"name":"bzip2","version":"1.0.6-5ubuntu0.1~esm1","description":"high-quality block-sorting file compressor - utilities","is_source":true},{"name":"bzip2","version":"1.0.6-5ubuntu0.1~esm1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-5ubuntu0.1~esm1"},{"name":"bzip2-doc","version":"1.0.6-5ubuntu0.1~esm1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-5ubuntu0.1~esm1"},{"name":"lib32bz2-1.0","version":"1.0.6-5ubuntu0.1~esm1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-5ubuntu0.1~esm1"},{"name":"lib32bz2-dev","version":"1.0.6-5ubuntu0.1~esm1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-5ubuntu0.1~esm1"},{"name":"lib64bz2-1.0","version":"1.0.6-5ubuntu0.1~esm1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-5ubuntu0.1~esm1"},{"name":"libbz2-dev","version":"1.0.6-5ubuntu0.1~esm1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-5ubuntu0.1~esm1"},{"name":"lib64bz2-dev","version":"1.0.6-5ubuntu0.1~esm1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-5ubuntu0.1~esm1"},{"name":"libbz2-1.0","version":"1.0.6-5ubuntu0.1~esm1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/bzip2","version_link":"https://launchpad.net/ubuntu/+source/bzip2/1.0.6-5ubuntu0.1~esm1"}]},"type":"USN","cves_ids":["CVE-2016-3189","CVE-2019-12900"]}]},{"id":"CVE-2016-5839","published":"2016-06-29T14:10:00","updated_at":"2025-08-26T11:55:28.782564+00:00","description":"\nWordPress before 4.5.3 allows remote attackers to bypass the\nsanitize_file_name protection mechanism via unspecified vectors.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":7.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"HIGH","availabilityImpact":"NONE","baseScore":7.5,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://wordpress.org/news/2016/06/wordpress-4-5-3/","https://marc.info/?l=oss-security&m=146670813911482&w=2","https://www.cve.org/CVERecord?id=CVE-2016-5839"],"bugs":[""],"patches":{"wordpress":[]},"tags":{},"packages":[{"name":"wordpress","source":"https://ubuntu.com/security/cve?package=wordpress","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=wordpress","debian":"https://tracker.debian.org/pkg/wordpress","statuses":[{"release_codename":"xenial","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"artful","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"wily","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"zesty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needed","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"resolute","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2016-5838","published":"2016-06-29T14:10:00","updated_at":"2025-08-26T11:55:28.782564+00:00","description":"\nWordPress before 4.5.3 allows remote attackers to bypass intended\npassword-change restrictions by leveraging knowledge of a cookie.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":7.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"HIGH","availabilityImpact":"NONE","baseScore":7.5,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://wordpress.org/news/2016/06/wordpress-4-5-3/","https://marc.info/?l=oss-security&m=146670813911482&w=2","https://www.cve.org/CVERecord?id=CVE-2016-5838"],"bugs":[""],"patches":{"wordpress":[]},"tags":{},"packages":[{"name":"wordpress","source":"https://ubuntu.com/security/cve?package=wordpress","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=wordpress","debian":"https://tracker.debian.org/pkg/wordpress","statuses":[{"release_codename":"xenial","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"artful","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"wily","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"zesty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needed","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"resolute","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2016-5837","published":"2016-06-29T14:10:00","updated_at":"2025-08-26T11:55:28.782564+00:00","description":"\nWordPress before 4.5.3 allows remote attackers to bypass intended access\nrestrictions and remove a category attribute from a post via unspecified\nvectors.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":7.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"HIGH","availabilityImpact":"NONE","baseScore":7.5,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://wordpress.org/news/2016/06/wordpress-4-5-3/","https://marc.info/?l=oss-security&m=146670813911482&w=2","https://www.cve.org/CVERecord?id=CVE-2016-5837"],"bugs":[""],"patches":{"wordpress":[]},"tags":{},"packages":[{"name":"wordpress","source":"https://ubuntu.com/security/cve?package=wordpress","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=wordpress","debian":"https://tracker.debian.org/pkg/wordpress","statuses":[{"release_codename":"xenial","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"artful","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"wily","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"zesty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needed","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"resolute","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2016-5836","published":"2016-06-29T14:10:00","updated_at":"2025-08-26T11:55:28.782564+00:00","description":"\nThe oEmbed protocol implementation in WordPress before 4.5.3 allows remote\nattackers to cause a denial of service via unspecified vectors.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":7.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":7.5,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://wordpress.org/news/2016/06/wordpress-4-5-3/","https://marc.info/?l=oss-security&m=146670813911482&w=2","https://www.cve.org/CVERecord?id=CVE-2016-5836"],"bugs":[""],"patches":{"wordpress":[]},"tags":{},"packages":[{"name":"wordpress","source":"https://ubuntu.com/security/cve?package=wordpress","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=wordpress","debian":"https://tracker.debian.org/pkg/wordpress","statuses":[{"release_codename":"xenial","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"artful","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"wily","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"zesty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needed","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"resolute","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2016-5835","published":"2016-06-29T14:10:00","updated_at":"2025-08-26T11:55:28.782564+00:00","description":"\nWordPress before 4.5.3 allows remote attackers to obtain sensitive\nrevision-history information by leveraging the ability to read a post,\nrelated to wp-admin/includes/ajax-actions.php and wp-admin/revision.php.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":7.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"NONE","availabilityImpact":"NONE","baseScore":7.5,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://wordpress.org/news/2016/06/wordpress-4-5-3/","https://marc.info/?l=oss-security&m=146670813911482&w=2","https://www.cve.org/CVERecord?id=CVE-2016-5835"],"bugs":[""],"patches":{"wordpress":[]},"tags":{},"packages":[{"name":"wordpress","source":"https://ubuntu.com/security/cve?package=wordpress","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=wordpress","debian":"https://tracker.debian.org/pkg/wordpress","statuses":[{"release_codename":"xenial","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"artful","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"wily","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"zesty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needed","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"resolute","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2016-5834","published":"2016-06-29T14:10:00","updated_at":"2025-08-26T11:55:28.782564+00:00","description":"\nCross-site scripting (XSS) vulnerability in the wp_get_attachment_link\nfunction in wp-includes/post-template.php in WordPress before 4.5.3 allows\nremote attackers to inject arbitrary web script or HTML via a crafted\nattachment name, a different vulnerability than CVE-2016-5833.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":6.1,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"LOW","integrityImpact":"LOW","availabilityImpact":"NONE","baseScore":6.1,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://wordpress.org/news/2016/06/wordpress-4-5-3/","https://marc.info/?l=oss-security&m=146670813911482&w=2","https://www.cve.org/CVERecord?id=CVE-2016-5834"],"bugs":[""],"patches":{"wordpress":[]},"tags":{},"packages":[{"name":"wordpress","source":"https://ubuntu.com/security/cve?package=wordpress","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=wordpress","debian":"https://tracker.debian.org/pkg/wordpress","statuses":[{"release_codename":"xenial","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"artful","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"wily","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"zesty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needed","component":null,"pocket":"security"},{"release_codename":"resolute","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2016-5833","published":"2016-06-29T14:10:00","updated_at":"2025-08-26T11:55:28.782564+00:00","description":"\nCross-site scripting (XSS) vulnerability in the column_title function in\nwp-admin/includes/class-wp-media-list-table.php in WordPress before 4.5.3\nallows remote attackers to inject arbitrary web script or HTML via a\ncrafted attachment name, a different vulnerability than CVE-2016-5834.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":6.1,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"LOW","integrityImpact":"LOW","availabilityImpact":"NONE","baseScore":6.1,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://wordpress.org/news/2016/06/wordpress-4-5-3/","https://marc.info/?l=oss-security&m=146670813911482&w=2","https://www.cve.org/CVERecord?id=CVE-2016-5833"],"bugs":[""],"patches":{"wordpress":[]},"tags":{},"packages":[{"name":"wordpress","source":"https://ubuntu.com/security/cve?package=wordpress","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=wordpress","debian":"https://tracker.debian.org/pkg/wordpress","statuses":[{"release_codename":"xenial","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"artful","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"wily","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"zesty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needed","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"resolute","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2016-5832","published":"2016-06-29T14:10:00","updated_at":"2025-08-26T11:55:28.782564+00:00","description":"\nThe customizer in WordPress before 4.5.3 allows remote attackers to bypass\nintended redirection restrictions via unspecified vectors.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":7.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"HIGH","availabilityImpact":"NONE","baseScore":7.5,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://wordpress.org/news/2016/06/wordpress-4-5-3/","https://marc.info/?l=oss-security&m=146670813911482&w=2","https://www.cve.org/CVERecord?id=CVE-2016-5832"],"bugs":[""],"patches":{"wordpress":[]},"tags":{},"packages":[{"name":"wordpress","source":"https://ubuntu.com/security/cve?package=wordpress","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=wordpress","debian":"https://tracker.debian.org/pkg/wordpress","statuses":[{"release_codename":"xenial","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"artful","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"wily","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"zesty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"resolute","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needed","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"4.5.3+dfsg-1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2012-6703","published":"2016-06-29T14:10:00","updated_at":"2026-07-04T07:33:39.706909+00:00","description":"\nInteger overflow in the snd_compr_allocate_buffer function in\nsound/core/compress_offload.c in the ALSA subsystem in the Linux kernel\nbefore 3.6-rc6-next-20120917 allows local users to cause a denial of\nservice (insufficient memory allocation) or possibly have unspecified other\nimpact via a crafted SNDRV_COMPRESS_SET_PARAMS ioctl call.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"this patch was incomplete and introduced CVE-2014-9904\n"},{"author":"jdstrand","note":"android kernels (flo, goldfish, grouper, maguro, mako and manta) are\nnot supported on the Ubuntu Touch 14.10 and earlier preview kernels\nlinux-lts-saucy no longer receives official support\nlinux-lts-quantal no longer receives official support"}],"codename":null,"priority":"medium","cvss3":7.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":7.8,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["http://seclists.org/oss-sec/2016/q2/616","https://www.cve.org/CVERecord?id=CVE-2012-6703"],"bugs":[""],"patches":{"linux":["break-fix: b21c60a4edd22e26fbebe7dd7078349a8cfa7273 b35cc8225845112a616e3a2266d2fde5ab13d3ab"],"linux-ti-omap4":[],"linux-linaro-omap":[],"linux-linaro-shared":[],"linux-linaro-vexpress":[],"linux-qcm-msm":[],"linux-armadaxp":[],"linux-lts-quantal":[],"linux-lts-raring":[],"linux-lts-saucy":[],"linux-lts-trusty":[],"linux-goldfish":[],"linux-grouper":[],"linux-maguro":[],"linux-mako":[],"linux-manta":[],"linux-flo":[],"linux-raspi2":[],"linux-lts-utopic":[],"linux-lts-vivid":[],"linux-lts-wily":[],"linux-lts-xenial":[],"linux-snapdragon":[],"linux-aws":[],"linux-hwe-edge":[],"linux-hwe":[],"linux-gke":[]},"tags":{"linux":["binary-exclude:linux-libc-dev"],"linux-armadaxp":["not-ue"],"linux-lts-quantal":["not-ue"],"linux-lts-saucy":["not-ue"]},"packages":[{"name":"linux","source":"https://ubuntu.com/security/cve?package=linux","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux","debian":"https://tracker.debian.org/pkg/linux","statuses":[{"release_codename":"precise","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"3.11.0-12.19","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.7~rc1","component":null,"pocket":"security"},{"release_codename":"wily","status":"not-affected","description":"3.19.0-15.15","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.2.0-16.19","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"not-affected","description":"4.4.0-21.37","component":null,"pocket":"security"},{"release_codename":"zesty","status":"not-affected","description":"4.8.0-22.24","component":null,"pocket":"security"}]},{"name":"linux-armadaxp","source":"https://ubuntu.com/security/cve?package=linux-armadaxp","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-armadaxp","debian":"https://tracker.debian.org/pkg/linux-armadaxp","statuses":[{"release_codename":"precise","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.7~rc1","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-aws","source":"https://ubuntu.com/security/cve?package=linux-aws","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-aws","debian":"https://tracker.debian.org/pkg/linux-aws","statuses":[{"release_codename":"upstream","status":"released","description":"3.7~rc1","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"4.4.0-1002.2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.4.0-1001.10","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-flo","source":"https://ubuntu.com/security/cve?package=linux-flo","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-flo","debian":"https://tracker.debian.org/pkg/linux-flo","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.7~rc1","component":null,"pocket":"security"},{"release_codename":"wily","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored","component":null,"pocket":"security"}]},{"name":"linux-gke","source":"https://ubuntu.com/security/cve?package=linux-gke","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-gke","debian":"https://tracker.debian.org/pkg/linux-gke","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.7~rc1","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.4.0-1003.3","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-goldfish","source":"https://ubuntu.com/security/cve?package=linux-goldfish","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-goldfish","debian":"https://tracker.debian.org/pkg/linux-goldfish","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.7~rc1","component":null,"pocket":"security"},{"release_codename":"wily","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"zesty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored","component":null,"pocket":"security"}]},{"name":"linux-grouper","source":"https://ubuntu.com/security/cve?package=linux-grouper","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-grouper","debian":"https://tracker.debian.org/pkg/linux-grouper","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.7~rc1","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored","component":null,"pocket":"security"}]},{"name":"linux-hwe","source":"https://ubuntu.com/security/cve?package=linux-hwe","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-hwe","debian":"https://tracker.debian.org/pkg/linux-hwe","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.7~rc1","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.8.0-36.36~16.04.1","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-hwe-edge","source":"https://ubuntu.com/security/cve?package=linux-hwe-edge","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-hwe-edge","debian":"https://tracker.debian.org/pkg/linux-hwe-edge","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.7~rc1","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.8.0-36.36~16.04.1","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-linaro-omap","source":"https://ubuntu.com/security/cve?package=linux-linaro-omap","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-linaro-omap","debian":"https://tracker.debian.org/pkg/linux-linaro-omap","statuses":[{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.7~rc1","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-linaro-shared","source":"https://ubuntu.com/security/cve?package=linux-linaro-shared","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-linaro-shared","debian":"https://tracker.debian.org/pkg/linux-linaro-shared","statuses":[{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.7~rc1","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-linaro-vexpress","source":"https://ubuntu.com/security/cve?package=linux-linaro-vexpress","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-linaro-vexpress","debian":"https://tracker.debian.org/pkg/linux-linaro-vexpress","statuses":[{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.7~rc1","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-lts-quantal","source":"https://ubuntu.com/security/cve?package=linux-lts-quantal","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-quantal","debian":"https://tracker.debian.org/pkg/linux-lts-quantal","statuses":[{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.7~rc1","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-lts-raring","source":"https://ubuntu.com/security/cve?package=linux-lts-raring","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-raring","debian":"https://tracker.debian.org/pkg/linux-lts-raring","statuses":[{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.7~rc1","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-lts-saucy","source":"https://ubuntu.com/security/cve?package=linux-lts-saucy","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-saucy","debian":"https://tracker.debian.org/pkg/linux-lts-saucy","statuses":[{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.7~rc1","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-lts-trusty","source":"https://ubuntu.com/security/cve?package=linux-lts-trusty","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-trusty","debian":"https://tracker.debian.org/pkg/linux-lts-trusty","statuses":[{"release_codename":"precise","status":"not-affected","description":"3.13.0-24.46~precise1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.7~rc1","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-lts-utopic","source":"https://ubuntu.com/security/cve?package=linux-lts-utopic","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-utopic","debian":"https://tracker.debian.org/pkg/linux-lts-utopic","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.7~rc1","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was not-affected [3.16.0-25.33~14.04.2]","component":null,"pocket":"security"}]},{"name":"linux-lts-vivid","source":"https://ubuntu.com/security/cve?package=linux-lts-vivid","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-vivid","debian":"https://tracker.debian.org/pkg/linux-lts-vivid","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.7~rc1","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was not-affected [3.19.0-18.18~14.04.1]","component":null,"pocket":"security"}]},{"name":"linux-lts-wily","source":"https://ubuntu.com/security/cve?package=linux-lts-wily","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-wily","debian":"https://tracker.debian.org/pkg/linux-lts-wily","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.7~rc1","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was not-affected [4.2.0-18.22~14.04.1]","component":null,"pocket":"security"}]},{"name":"linux-lts-xenial","source":"https://ubuntu.com/security/cve?package=linux-lts-xenial","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-xenial","debian":"https://tracker.debian.org/pkg/linux-lts-xenial","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"4.4.0-13.29~14.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.7~rc1","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-maguro","source":"https://ubuntu.com/security/cve?package=linux-maguro","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-maguro","debian":"https://tracker.debian.org/pkg/linux-maguro","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.7~rc1","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored","component":null,"pocket":"security"}]},{"name":"linux-mako","source":"https://ubuntu.com/security/cve?package=linux-mako","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-mako","debian":"https://tracker.debian.org/pkg/linux-mako","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.7~rc1","component":null,"pocket":"security"},{"release_codename":"wily","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored","component":null,"pocket":"security"}]},{"name":"linux-manta","source":"https://ubuntu.com/security/cve?package=linux-manta","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-manta","debian":"https://tracker.debian.org/pkg/linux-manta","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.7~rc1","component":null,"pocket":"security"},{"release_codename":"wily","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored","component":null,"pocket":"security"}]},{"name":"linux-qcm-msm","source":"https://ubuntu.com/security/cve?package=linux-qcm-msm","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-qcm-msm","debian":"https://tracker.debian.org/pkg/linux-qcm-msm","statuses":[{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.7~rc1","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-raspi2","source":"https://ubuntu.com/security/cve?package=linux-raspi2","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-raspi2","debian":"https://tracker.debian.org/pkg/linux-raspi2","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.7~rc1","component":null,"pocket":"security"},{"release_codename":"wily","status":"not-affected","description":"4.2.0-1008.12","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.2.0-1013.19","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"not-affected","description":"4.4.0-1009.10","component":null,"pocket":"security"},{"release_codename":"zesty","status":"not-affected","description":"4.8.0-1013.15","component":null,"pocket":"security"}]},{"name":"linux-snapdragon","source":"https://ubuntu.com/security/cve?package=linux-snapdragon","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-snapdragon","debian":"https://tracker.debian.org/pkg/linux-snapdragon","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.7~rc1","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.4.0-1012.12","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"not-affected","description":"4.4.0-1012.12","component":null,"pocket":"security"},{"release_codename":"zesty","status":"not-affected","description":"4.4.0-1029.32","component":null,"pocket":"security"}]},{"name":"linux-ti-omap4","source":"https://ubuntu.com/security/cve?package=linux-ti-omap4","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-ti-omap4","debian":"https://tracker.debian.org/pkg/linux-ti-omap4","statuses":[{"release_codename":"precise","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.7~rc1","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2016-4324","published":"2016-06-29T00:00:00","updated_at":"2025-08-25T22:03:05.831201+00:00","description":"\nUse-after-free vulnerability in LibreOffice before 5.1.4 allows remote\nattackers to execute arbitrary code via a crafted RTF file, related to\nstylesheet and superscript tokens.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":7.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":7.8,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://www.libreoffice.org/about-us/security/advisories/cve-2016-4324/","http://www.talosintelligence.com/reports/TALOS-2016-0126/","https://ubuntu.com/security/notices/USN-3022-1","https://www.cve.org/CVERecord?id=CVE-2016-4324"],"bugs":[""],"patches":{"openoffice.org":[],"libreoffice":[]},"tags":{},"packages":[{"name":"libreoffice","source":"https://ubuntu.com/security/cve?package=libreoffice","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libreoffice","debian":"https://tracker.debian.org/pkg/libreoffice","statuses":[{"release_codename":"precise","status":"released","description":"1:3.5.7-0ubuntu11","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"5.2.0","component":null,"pocket":"security"},{"release_codename":"wily","status":"released","description":"1:5.0.6-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"1:5.1.4-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty/esm was DNE [trusty was not-affected [verified via reproducers]]","component":null,"pocket":"security"}]},{"name":"openoffice.org","source":"https://ubuntu.com/security/cve?package=openoffice.org","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openoffice.org","debian":"https://tracker.debian.org/pkg/openoffice.org","statuses":[{"release_codename":"precise","status":"not-affected","description":"transitional packages","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-3022-1"],"notices":[{"id":"USN-3022-1","title":"LibreOffice vulnerability","summary":"LibreOffice could be made to crash or run programs as your login if it\nopened a specially crafted file.\n","instructions":"After a standard system update you need to restart LibreOffice to make\nall the necessary changes.\n","references":[],"published":"2016-06-29T23:55:23.458223","description":"It was discovered that LibreOffice incorrectly handled RTF document files.\nIf a user were tricked into opening a specially crafted RTF document, a\nremote attacker could cause LibreOffice to crash, and possibly execute\narbitrary code.\n","is_hidden":false,"release_packages":{"precise":[{"name":"libreoffice","version":"1:3.5.7-0ubuntu11","description":"Office productivity suite","is_source":true},{"name":"libreoffice-core","version":"1:3.5.7-0ubuntu11","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:3.5.7-0ubuntu11"}],"wily":[{"name":"libreoffice","version":"1:5.0.6-0ubuntu1","description":"Office productivity suite","is_source":true},{"name":"libreoffice-core","version":"1:5.0.6-0ubuntu1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.0.6-0ubuntu1"}],"xenial":[{"name":"libreoffice","version":"1:5.1.4-0ubuntu1","description":"Office productivity suite","is_source":true},{"name":"fonts-opensymbol","version":"2:102.7+LibO5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"gir1.2-lokdocview-0.1","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-avmedia-backend-gstreamer","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-base","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-base-core","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-base-drivers","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-calc","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-common","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-core","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-dev","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-dev-doc","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-draw","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-gnome","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-gtk","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-gtk3","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-impress","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-java-common","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-kde","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-l10n-in","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-l10n-za","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-librelogo","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-math","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-mysql-connector","version":"1.0.2+LibO5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-officebean","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-ogltrans","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-pdfimport","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-report-builder","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-report-builder-bin","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-script-provider-bsh","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-script-provider-js","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-script-provider-python","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-sdbc-firebird","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-sdbc-hsqldb","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-sdbc-postgresql","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-style-breeze","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-style-elementary","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-style-galaxy","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-style-hicontrast","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-style-human","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-style-oxygen","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-style-sifr","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-style-tango","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-subsequentcheckbase","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-wiki-publisher","version":"1.2.0+LibO5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreoffice-writer","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"libreofficekit-dev","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"python3-uno","version":"1:5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"uno-libs3","version":"5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"},{"name":"ure","version":"5.1.4-0ubuntu1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/libreoffice","version_link":"https://launchpad.net/ubuntu/+source/libreoffice/1:5.1.4-0ubuntu1","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2016-4324"]}]},{"id":"CVE-2016-1237","published":"2016-06-29T00:00:00","updated_at":"2026-07-04T07:42:13.375994+00:00","description":"\nnfsd in the Linux kernel through 4.6.3 allows local users to bypass\nintended file-permission restrictions by setting a POSIX ACL, related to\nnfs2acl.c, nfs3acl.c, and nfs4acl.c.","ubuntu_description":"\nA missing permission check when settings ACLs was discovered in nfsd. A\nlocal user could exploit this flaw to gain access to any file by setting an\nACL.","notes":[{"author":"mdeslaur","note":"also needs 485e71e8fb6356c08c7fc6bcce4bf02c9a9a663f\n"},{"author":"jdstrand","note":"android kernels (flo, goldfish, grouper, maguro, mako and manta) are\nnot supported on the Ubuntu Touch 14.10 and earlier preview kernels\nlinux-lts-saucy no longer receives official support\nlinux-lts-quantal no longer receives official support"}],"codename":null,"priority":"medium","cvss3":5.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"NONE","availabilityImpact":"NONE","baseScore":5.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-3053-1","https://ubuntu.com/security/notices/USN-3070-1","https://ubuntu.com/security/notices/USN-3070-4","https://ubuntu.com/security/notices/USN-3070-3","https://ubuntu.com/security/notices/USN-3070-2","https://www.cve.org/CVERecord?id=CVE-2016-1237"],"bugs":[""],"patches":{"linux":["break-fix: 4ac7249ea5a0ceef9f8269f63f33cc873c3fac61 485e71e8fb6356c08c7fc6bcce4bf02c9a9a663f","break-fix: 4ac7249ea5a0ceef9f8269f63f33cc873c3fac61 999653786df6954a31044528ac3f7a5dadca08f4"],"linux-ti-omap4":[],"linux-linaro-omap":[],"linux-linaro-shared":[],"linux-linaro-vexpress":[],"linux-qcm-msm":[],"linux-armadaxp":[],"linux-lts-quantal":[],"linux-lts-raring":[],"linux-lts-saucy":[],"linux-lts-trusty":[],"linux-goldfish":[],"linux-grouper":[],"linux-maguro":[],"linux-mako":[],"linux-manta":[],"linux-flo":[],"linux-raspi2":[],"linux-lts-utopic":[],"linux-lts-vivid":[],"linux-lts-wily":[],"linux-lts-xenial":[],"linux-snapdragon":[],"linux-aws":[],"linux-hwe-edge":[],"linux-hwe":[],"linux-gke":[]},"tags":{"linux":["binary-exclude:linux-libc-dev"],"linux-armadaxp":["not-ue"],"linux-lts-quantal":["not-ue"],"linux-lts-saucy":["not-ue"]},"packages":[{"name":"linux","source":"https://ubuntu.com/security/cve?package=linux","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux","debian":"https://tracker.debian.org/pkg/linux","statuses":[{"release_codename":"upstream","status":"released","description":"4.7~rc5","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"4.4.0-36.55","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"not-affected","description":"4.8.0-11.12","component":null,"pocket":"security"}]},{"name":"linux-armadaxp","source":"https://ubuntu.com/security/cve?package=linux-armadaxp","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-armadaxp","debian":"https://tracker.debian.org/pkg/linux-armadaxp","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc5","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"","component":null,"pocket":"security"}]},{"name":"linux-aws","source":"https://ubuntu.com/security/cve?package=linux-aws","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-aws","debian":"https://tracker.debian.org/pkg/linux-aws","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"4.4.0-1002.2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.4.0-1001.10","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-flo","source":"https://ubuntu.com/security/cve?package=linux-flo","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-flo","debian":"https://tracker.debian.org/pkg/linux-flo","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc5","component":null,"pocket":"security"},{"release_codename":"wily","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-gke","source":"https://ubuntu.com/security/cve?package=linux-gke","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-gke","debian":"https://tracker.debian.org/pkg/linux-gke","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.4.0-1003.3","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-goldfish","source":"https://ubuntu.com/security/cve?package=linux-goldfish","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-goldfish","debian":"https://tracker.debian.org/pkg/linux-goldfish","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc5","component":null,"pocket":"security"},{"release_codename":"wily","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-grouper","source":"https://ubuntu.com/security/cve?package=linux-grouper","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-grouper","debian":"https://tracker.debian.org/pkg/linux-grouper","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc5","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored","component":null,"pocket":"security"}]},{"name":"linux-hwe","source":"https://ubuntu.com/security/cve?package=linux-hwe","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-hwe","debian":"https://tracker.debian.org/pkg/linux-hwe","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.8.0-36.36~16.04.1","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-hwe-edge","source":"https://ubuntu.com/security/cve?package=linux-hwe-edge","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-hwe-edge","debian":"https://tracker.debian.org/pkg/linux-hwe-edge","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.8.0-36.36~16.04.1","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-linaro-omap","source":"https://ubuntu.com/security/cve?package=linux-linaro-omap","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-linaro-omap","debian":"https://tracker.debian.org/pkg/linux-linaro-omap","statuses":[{"release_codename":"upstream","status":"released","description":"4.7~rc5","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-linaro-shared","source":"https://ubuntu.com/security/cve?package=linux-linaro-shared","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-linaro-shared","debian":"https://tracker.debian.org/pkg/linux-linaro-shared","statuses":[{"release_codename":"upstream","status":"released","description":"4.7~rc5","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-linaro-vexpress","source":"https://ubuntu.com/security/cve?package=linux-linaro-vexpress","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-linaro-vexpress","debian":"https://tracker.debian.org/pkg/linux-linaro-vexpress","statuses":[{"release_codename":"upstream","status":"released","description":"4.7~rc5","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-lts-quantal","source":"https://ubuntu.com/security/cve?package=linux-lts-quantal","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-quantal","debian":"https://tracker.debian.org/pkg/linux-lts-quantal","statuses":[{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc5","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-lts-raring","source":"https://ubuntu.com/security/cve?package=linux-lts-raring","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-raring","debian":"https://tracker.debian.org/pkg/linux-lts-raring","statuses":[{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc5","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-lts-saucy","source":"https://ubuntu.com/security/cve?package=linux-lts-saucy","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-saucy","debian":"https://tracker.debian.org/pkg/linux-lts-saucy","statuses":[{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc5","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-lts-trusty","source":"https://ubuntu.com/security/cve?package=linux-lts-trusty","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-trusty","debian":"https://tracker.debian.org/pkg/linux-lts-trusty","statuses":[{"release_codename":"precise","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc5","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-lts-utopic","source":"https://ubuntu.com/security/cve?package=linux-lts-utopic","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-utopic","debian":"https://tracker.debian.org/pkg/linux-lts-utopic","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc5","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored [end of standard support]","component":null,"pocket":"security"}]},{"name":"linux-lts-vivid","source":"https://ubuntu.com/security/cve?package=linux-lts-vivid","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-vivid","debian":"https://tracker.debian.org/pkg/linux-lts-vivid","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"3.19.0-66.74~14.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc5","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-lts-wily","source":"https://ubuntu.com/security/cve?package=linux-lts-wily","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-wily","debian":"https://tracker.debian.org/pkg/linux-lts-wily","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc5","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored [end of standard support]","component":null,"pocket":"security"}]},{"name":"linux-lts-xenial","source":"https://ubuntu.com/security/cve?package=linux-lts-xenial","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-xenial","debian":"https://tracker.debian.org/pkg/linux-lts-xenial","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"4.4.0-36.55~14.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc5","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-maguro","source":"https://ubuntu.com/security/cve?package=linux-maguro","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-maguro","debian":"https://tracker.debian.org/pkg/linux-maguro","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc5","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored","component":null,"pocket":"security"}]},{"name":"linux-mako","source":"https://ubuntu.com/security/cve?package=linux-mako","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-mako","debian":"https://tracker.debian.org/pkg/linux-mako","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc5","component":null,"pocket":"security"},{"release_codename":"wily","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-manta","source":"https://ubuntu.com/security/cve?package=linux-manta","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-manta","debian":"https://tracker.debian.org/pkg/linux-manta","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc5","component":null,"pocket":"security"},{"release_codename":"wily","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored","component":null,"pocket":"security"}]},{"name":"linux-qcm-msm","source":"https://ubuntu.com/security/cve?package=linux-qcm-msm","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-qcm-msm","debian":"https://tracker.debian.org/pkg/linux-qcm-msm","statuses":[{"release_codename":"upstream","status":"released","description":"4.7~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-raspi2","source":"https://ubuntu.com/security/cve?package=linux-raspi2","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-raspi2","debian":"https://tracker.debian.org/pkg/linux-raspi2","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc5","component":null,"pocket":"security"},{"release_codename":"wily","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"4.4.0-1021.27","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"not-affected","description":"4.8.0-1012.14","component":null,"pocket":"security"}]},{"name":"linux-snapdragon","source":"https://ubuntu.com/security/cve?package=linux-snapdragon","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-snapdragon","debian":"https://tracker.debian.org/pkg/linux-snapdragon","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc5","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"4.4.0-1024.27","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"not-affected","description":"4.4.0-1029.32","component":null,"pocket":"security"}]},{"name":"linux-ti-omap4","source":"https://ubuntu.com/security/cve?package=linux-ti-omap4","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-ti-omap4","debian":"https://tracker.debian.org/pkg/linux-ti-omap4","statuses":[{"release_codename":"upstream","status":"released","description":"4.7~rc5","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-3070-1","USN-3070-2","USN-3053-1","USN-3070-3","USN-3070-4"],"notices":[{"id":"USN-3070-1","title":"Linux kernel vulnerabilities","summary":"Several security issues were fixed in the kernel.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n\nATTENTION: Due to an unavoidable ABI change the kernel updates have\nbeen given a new version number, which requires you to recompile and\nreinstall all third party kernel modules you might have installed.\nUnless you manually uninstalled the standard kernel metapackages\n(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,\nlinux-powerpc), a standard system upgrade will automatically perform\nthis as well.\n","references":[],"published":"2016-08-29T19:01:14.527322","description":"A missing permission check when settings ACLs was discovered in nfsd. A\nlocal user could exploit this flaw to gain access to any file by setting an\nACL. (CVE-2016-1237)\n\nKangjie Lu discovered an information leak in the Reliable Datagram Sockets\n(RDS) implementation in the Linux kernel. A local attacker could use this\nto obtain potentially sensitive information from kernel memory.\n(CVE-2016-5244)\n\nJames Patrick-Evans discovered that the airspy USB device driver in the\nLinux kernel did not properly handle certain error conditions. An attacker\nwith physical access could use this to cause a denial of service (memory\nconsumption). (CVE-2016-5400)\n\nYue Cao et al discovered a flaw in the TCP implementation's handling of\nchallenge acks in the Linux kernel. A remote attacker could use this to\ncause a denial of service (reset connection) or inject content into an TCP\nstream. (CVE-2016-5696)\n\nPengfei Wang discovered a race condition in the MIC VOP driver in the Linux\nkernel. A local attacker could use this to cause a denial of service\n(system crash) or obtain potentially sensitive information from kernel\nmemory. (CVE-2016-5728)\n\nCyril Bur discovered that on PowerPC platforms, the Linux kernel mishandled\ntransactional memory state on exec(). A local attacker could use this to\ncause a denial of service (system crash) or possibly execute arbitrary\ncode. (CVE-2016-5828)\n\nIt was discovered that a heap based buffer overflow existed in the USB HID\ndriver in the Linux kernel. A local attacker could use this cause a denial\nof service (system crash) or possibly execute arbitrary code.\n(CVE-2016-5829)\n\nIt was discovered that the OverlayFS implementation in the Linux kernel did\nnot properly verify dentry state before proceeding with unlink and rename\noperations. A local attacker could use this to cause a denial of service\n(system crash). (CVE-2016-6197)\n","is_hidden":false,"release_packages":{"xenial":[{"name":"linux","version":"4.4.0-36.55","description":"Linux kernel","is_source":true},{"name":"linux-image-4.4.0-36-generic","version":"4.4.0-36.55","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.4.0-36.55","pocket":"security"},{"name":"linux-image-4.4.0-36-generic-lpae","version":"4.4.0-36.55","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.4.0-36.55","pocket":"security"},{"name":"linux-image-4.4.0-36-lowlatency","version":"4.4.0-36.55","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.4.0-36.55","pocket":"security"},{"name":"linux-image-4.4.0-36-powerpc-e500mc","version":"4.4.0-36.55","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.4.0-36.55","pocket":"security"},{"name":"linux-image-4.4.0-36-powerpc-smp","version":"4.4.0-36.55","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.4.0-36.55","pocket":"security"},{"name":"linux-image-4.4.0-36-powerpc64-emb","version":"4.4.0-36.55","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.4.0-36.55","pocket":"security"},{"name":"linux-image-4.4.0-36-powerpc64-smp","version":"4.4.0-36.55","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.4.0-36.55","pocket":"security"},{"name":"linux-image-extra-4.4.0-36-generic","version":"4.4.0-36.55","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.4.0-36.55","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2016-1237","CVE-2016-5244","CVE-2016-5400","CVE-2016-5696","CVE-2016-5728","CVE-2016-5828","CVE-2016-5829","CVE-2016-6197"]},{"id":"USN-3070-2","title":"Linux kernel (Raspberry Pi 2) vulnerabilities","summary":"Several security issues were fixed in the kernel.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n\nATTENTION: Due to an unavoidable ABI change the kernel updates have\nbeen given a new version number, which requires you to recompile and\nreinstall all third party kernel modules you might have installed.\nUnless you manually uninstalled the standard kernel metapackages\n(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,\nlinux-powerpc), a standard system upgrade will automatically perform\nthis as well.\n","references":[],"published":"2016-08-30T16:22:36.826927","description":"A missing permission check when settings ACLs was discovered in nfsd. A\nlocal user could exploit this flaw to gain access to any file by setting an\nACL. (CVE-2016-1237)\n\nKangjie Lu discovered an information leak in the Reliable Datagram Sockets\n(RDS) implementation in the Linux kernel. A local attacker could use this\nto obtain potentially sensitive information from kernel memory.\n(CVE-2016-5244)\n\nJames Patrick-Evans discovered that the airspy USB device driver in the\nLinux kernel did not properly handle certain error conditions. An attacker\nwith physical access could use this to cause a denial of service (memory\nconsumption). (CVE-2016-5400)\n\nYue Cao et al discovered a flaw in the TCP implementation's handling of\nchallenge acks in the Linux kernel. A remote attacker could use this to\ncause a denial of service (reset connection) or inject content into an TCP\nstream. (CVE-2016-5696)\n\nPengfei Wang discovered a race condition in the MIC VOP driver in the Linux\nkernel. A local attacker could use this to cause a denial of service\n(system crash) or obtain potentially sensitive information from kernel\nmemory. (CVE-2016-5728)\n\nCyril Bur discovered that on PowerPC platforms, the Linux kernel mishandled\ntransactional memory state on exec(). A local attacker could use this to\ncause a denial of service (system crash) or possibly execute arbitrary\ncode. (CVE-2016-5828)\n\nIt was discovered that a heap based buffer overflow existed in the USB HID\ndriver in the Linux kernel. A local attacker could use this cause a denial\nof service (system crash) or possibly execute arbitrary code.\n(CVE-2016-5829)\n\nIt was discovered that the OverlayFS implementation in the Linux kernel did\nnot properly verify dentry state before proceeding with unlink and rename\noperations. A local attacker could use this to cause a denial of service\n(system crash). (CVE-2016-6197)\n","is_hidden":false,"release_packages":{"xenial":[{"name":"linux-raspi2","version":"4.4.0-1021.27","description":"Linux kernel for Raspberry Pi 2","is_source":true},{"name":"linux-image-4.4.0-1021-raspi2","version":"4.4.0-1021.27","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-raspi2","version_link":"https://launchpad.net/ubuntu/+source/linux-raspi2/4.4.0-1021.27","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2016-1237","CVE-2016-5244","CVE-2016-5400","CVE-2016-5696","CVE-2016-5728","CVE-2016-5828","CVE-2016-5829","CVE-2016-6197"]},{"id":"USN-3053-1","title":"Linux kernel (Vivid HWE) vulnerabilities","summary":"Several security issues were fixed in the kernel.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n\nATTENTION: Due to an unavoidable ABI change the kernel updates have\nbeen given a new version number, which requires you to recompile and\nreinstall all third party kernel modules you might have installed.\nUnless you manually uninstalled the standard kernel metapackages\n(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,\nlinux-powerpc), a standard system upgrade will automatically perform\nthis as well.\n","references":[],"published":"2016-08-10T10:42:07.878876","description":"A missing permission check when settings ACLs was discovered in nfsd. A\nlocal user could exploit this flaw to gain access to any file by setting an\nACL. (CVE-2016-1237)\n\nIt was discovered that the keyring implementation in the Linux kernel did\nnot ensure a data structure was initialized before referencing it after an\nerror condition occurred. A local attacker could use this to cause a denial\nof service (system crash). (CVE-2016-4470)\n\nSasha Levin discovered that a use-after-free existed in the percpu\nallocator in the Linux kernel. A local attacker could use this to cause a\ndenial of service (system crash) or possibly execute arbitrary code with\nadministrative privileges. (CVE-2016-4794)\n\nKangjie Lu discovered an information leak in the netlink implementation of\nthe Linux kernel. A local attacker could use this to obtain sensitive\ninformation from kernel memory. (CVE-2016-5243)\n","is_hidden":false,"release_packages":{"trusty":[{"name":"linux-lts-vivid","version":"3.19.0-66.74~14.04.1","description":"Linux hardware enablement kernel from Vivid for Trusty","is_source":true},{"name":"linux-image-3.19.0-66-generic","version":"3.19.0-66.74~14.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-lts-vivid","version_link":"https://launchpad.net/ubuntu/+source/linux-lts-vivid/3.19.0-66.74~14.04.1","pocket":"security"},{"name":"linux-image-3.19.0-66-generic-lpae","version":"3.19.0-66.74~14.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-lts-vivid","version_link":"https://launchpad.net/ubuntu/+source/linux-lts-vivid/3.19.0-66.74~14.04.1","pocket":"security"},{"name":"linux-image-3.19.0-66-lowlatency","version":"3.19.0-66.74~14.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-lts-vivid","version_link":"https://launchpad.net/ubuntu/+source/linux-lts-vivid/3.19.0-66.74~14.04.1","pocket":"security"},{"name":"linux-image-3.19.0-66-powerpc-e500mc","version":"3.19.0-66.74~14.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-lts-vivid","version_link":"https://launchpad.net/ubuntu/+source/linux-lts-vivid/3.19.0-66.74~14.04.1","pocket":"security"},{"name":"linux-image-3.19.0-66-powerpc-smp","version":"3.19.0-66.74~14.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-lts-vivid","version_link":"https://launchpad.net/ubuntu/+source/linux-lts-vivid/3.19.0-66.74~14.04.1","pocket":"security"},{"name":"linux-image-3.19.0-66-powerpc64-emb","version":"3.19.0-66.74~14.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-lts-vivid","version_link":"https://launchpad.net/ubuntu/+source/linux-lts-vivid/3.19.0-66.74~14.04.1","pocket":"security"},{"name":"linux-image-3.19.0-66-powerpc64-smp","version":"3.19.0-66.74~14.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-lts-vivid","version_link":"https://launchpad.net/ubuntu/+source/linux-lts-vivid/3.19.0-66.74~14.04.1","pocket":"security"},{"name":"linux-image-extra-3.19.0-66-generic","version":"3.19.0-66.74~14.04.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-lts-vivid","version_link":"https://launchpad.net/ubuntu/+source/linux-lts-vivid/3.19.0-66.74~14.04.1","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2016-1237","CVE-2016-4470","CVE-2016-4794","CVE-2016-5243"]},{"id":"USN-3070-3","title":"Linux kernel (Qualcomm Snapdragon) vulnerabilities","summary":"Several security issues were fixed in the kernel.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n\nATTENTION: Due to an unavoidable ABI change the kernel updates have\nbeen given a new version number, which requires you to recompile and\nreinstall all third party kernel modules you might have installed.\nUnless you manually uninstalled the standard kernel metapackages\n(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,\nlinux-powerpc), a standard system upgrade will automatically perform\nthis as well.\n","references":[],"published":"2016-08-30T16:28:23.321283","description":"A missing permission check when settings ACLs was discovered in nfsd. A\nlocal user could exploit this flaw to gain access to any file by setting an\nACL. (CVE-2016-1237)\n\nKangjie Lu discovered an information leak in the Reliable Datagram Sockets\n(RDS) implementation in the Linux kernel. A local attacker could use this\nto obtain potentially sensitive information from kernel memory.\n(CVE-2016-5244)\n\nJames Patrick-Evans discovered that the airspy USB device driver in the\nLinux kernel did not properly handle certain error conditions. An attacker\nwith physical access could use this to cause a denial of service (memory\nconsumption). (CVE-2016-5400)\n\nYue Cao et al discovered a flaw in the TCP implementation's handling of\nchallenge acks in the Linux kernel. A remote attacker could use this to\ncause a denial of service (reset connection) or inject content into an TCP\nstream. (CVE-2016-5696)\n\nPengfei Wang discovered a race condition in the MIC VOP driver in the Linux\nkernel. A local attacker could use this to cause a denial of service\n(system crash) or obtain potentially sensitive information from kernel\nmemory. (CVE-2016-5728)\n\nCyril Bur discovered that on PowerPC platforms, the Linux kernel mishandled\ntransactional memory state on exec(). A local attacker could use this to\ncause a denial of service (system crash) or possibly execute arbitrary\ncode. (CVE-2016-5828)\n\nIt was discovered that a heap based buffer overflow existed in the USB HID\ndriver in the Linux kernel. A local attacker could use this cause a denial\nof service (system crash) or possibly execute arbitrary code.\n(CVE-2016-5829)\n\nIt was discovered that the OverlayFS implementation in the Linux kernel did\nnot properly verify dentry state before proceeding with unlink and rename\noperations. A local attacker could use this to cause a denial of service\n(system crash). (CVE-2016-6197)\n","is_hidden":false,"release_packages":{"xenial":[{"name":"linux-snapdragon","version":"4.4.0-1024.27","description":"Linux kernel for Snapdragon Processors","is_source":true},{"name":"linux-image-4.4.0-1024-snapdragon","version":"4.4.0-1024.27","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-snapdragon","version_link":"https://launchpad.net/ubuntu/+source/linux-snapdragon/4.4.0-1024.27","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2016-1237","CVE-2016-5244","CVE-2016-5400","CVE-2016-5696","CVE-2016-5728","CVE-2016-5828","CVE-2016-5829","CVE-2016-6197"]},{"id":"USN-3070-4","title":"Linux kernel (Xenial HWE) vulnerabilities","summary":"Several security issues were fixed in the kernel.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n\nATTENTION: Due to an unavoidable ABI change the kernel updates have\nbeen given a new version number, which requires you to recompile and\nreinstall all third party kernel modules you might have installed.\nUnless you manually uninstalled the standard kernel metapackages\n(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,\nlinux-powerpc), a standard system upgrade will automatically perform\nthis as well.\n","references":[],"published":"2016-08-30T16:47:18.923001","description":"USN-3070-1 fixed vulnerabilities in the Linux kernel for Ubuntu\n16.04 LTS. This update provides the corresponding updates for the\nLinux Hardware Enablement (HWE) kernel from Ubuntu 16.04 LTS for\nUbuntu 14.04 LTS.\n\nA missing permission check when settings ACLs was discovered in nfsd. A\nlocal user could exploit this flaw to gain access to any file by setting an\nACL. (CVE-2016-1237)\n\nKangjie Lu discovered an information leak in the Reliable Datagram Sockets\n(RDS) implementation in the Linux kernel. A local attacker could use this\nto obtain potentially sensitive information from kernel memory.\n(CVE-2016-5244)\n\nJames Patrick-Evans discovered that the airspy USB device driver in the\nLinux kernel did not properly handle certain error conditions. An attacker\nwith physical access could use this to cause a denial of service (memory\nconsumption). (CVE-2016-5400)\n\nYue Cao et al discovered a flaw in the TCP implementation's handling of\nchallenge acks in the Linux kernel. A remote attacker could use this to\ncause a denial of service (reset connection) or inject content into an TCP\nstream. (CVE-2016-5696)\n\nPengfei Wang discovered a race condition in the MIC VOP driver in the Linux\nkernel. A local attacker could use this to cause a denial of service\n(system crash) or obtain potentially sensitive information from kernel\nmemory. (CVE-2016-5728)\n\nCyril Bur discovered that on PowerPC platforms, the Linux kernel mishandled\ntransactional memory state on exec(). A local attacker could use this to\ncause a denial of service (system crash) or possibly execute arbitrary\ncode. (CVE-2016-5828)\n\nIt was discovered that a heap based buffer overflow existed in the USB HID\ndriver in the Linux kernel. A local attacker could use this cause a denial\nof service (system crash) or possibly execute arbitrary code.\n(CVE-2016-5829)\n\nIt was discovered that the OverlayFS implementation in the Linux kernel did\nnot properly verify dentry state before proceeding with unlink and rename\noperations. A local attacker could use this to cause a denial of service\n(system crash). (CVE-2016-6197)\n","is_hidden":false,"release_packages":{"trusty":[{"name":"linux-lts-xenial","version":"4.4.0-36.55~14.04.1","description":"Linux hardware enablement kernel from Xenial for Trusty","is_source":true},{"name":"linux-image-4.4.0-36-generic","version":"4.4.0-36.55~14.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-lts-xenial","version_link":"https://launchpad.net/ubuntu/+source/linux-lts-xenial/4.4.0-36.55~14.04.1","pocket":"security"},{"name":"linux-image-4.4.0-36-generic-lpae","version":"4.4.0-36.55~14.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-lts-xenial","version_link":"https://launchpad.net/ubuntu/+source/linux-lts-xenial/4.4.0-36.55~14.04.1","pocket":"security"},{"name":"linux-image-4.4.0-36-lowlatency","version":"4.4.0-36.55~14.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-lts-xenial","version_link":"https://launchpad.net/ubuntu/+source/linux-lts-xenial/4.4.0-36.55~14.04.1","pocket":"security"},{"name":"linux-image-4.4.0-36-powerpc-e500mc","version":"4.4.0-36.55~14.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-lts-xenial","version_link":"https://launchpad.net/ubuntu/+source/linux-lts-xenial/4.4.0-36.55~14.04.1","pocket":"security"},{"name":"linux-image-4.4.0-36-powerpc-smp","version":"4.4.0-36.55~14.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-lts-xenial","version_link":"https://launchpad.net/ubuntu/+source/linux-lts-xenial/4.4.0-36.55~14.04.1","pocket":"security"},{"name":"linux-image-4.4.0-36-powerpc64-emb","version":"4.4.0-36.55~14.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-lts-xenial","version_link":"https://launchpad.net/ubuntu/+source/linux-lts-xenial/4.4.0-36.55~14.04.1","pocket":"security"},{"name":"linux-image-4.4.0-36-powerpc64-smp","version":"4.4.0-36.55~14.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-lts-xenial","version_link":"https://launchpad.net/ubuntu/+source/linux-lts-xenial/4.4.0-36.55~14.04.1","pocket":"security"},{"name":"linux-image-extra-4.4.0-36-generic","version":"4.4.0-36.55~14.04.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-lts-xenial","version_link":"https://launchpad.net/ubuntu/+source/linux-lts-xenial/4.4.0-36.55~14.04.1","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2016-1237","CVE-2016-5244","CVE-2016-5400","CVE-2016-5696","CVE-2016-5728","CVE-2016-5828","CVE-2016-5829","CVE-2016-6197"]}]},{"id":"CVE-2016-4440","published":"2016-06-27T10:59:00","updated_at":"2026-07-04T07:42:13.375994+00:00","description":"\narch/x86/kvm/vmx.c in the Linux kernel through 4.6.3 mishandles the APICv\non/off state, which allows guest OS users to obtain direct APIC MSR access\non the host OS, and consequently cause a denial of service (host OS crash)\nor possibly execute arbitrary code on the host OS, via x2APIC mode.","ubuntu_description":"\nXXX-no-USN-needed-see-NOTE-XXX\nIt was discovered that the Linux kernel mishandles the APICv on/off\nstate, allowing guest OS users direct APIC MSR access on the host\nOS. A local attacker could use this to cause a denial of service (host\nOS crash), or possibly execute arbitrary code with administrative\nprivileges in the host OS.","notes":[{"author":"jdstrand","note":"android kernels (flo, goldfish, grouper, maguro, mako and manta) are\nnot supported on the Ubuntu Touch 14.10 and earlier preview kernels\nlinux-lts-saucy no longer receives official support\nlinux-lts-quantal no longer receives official support"},{"author":"sbeattie","note":"according to kvm-devel thread, introduced in\n5c919412fe61c35947816fdbd5f7bd09fe0dd073\nnote for xenial kernels, both the commit that introduced\nthe issue and the fix were pulled in to the 4.4.0-32.51 kernel,\nso at no time were users exposed to this vulnerability."}],"codename":null,"priority":"medium","cvss3":7.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":7.8,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["http://comments.gmane.org/gmane.comp.emulators.kvm.devel/152100","http://permalink.gmane.org/gmane.comp.emulators.kvm.devel/152191","http://www.openwall.com/lists/oss-security/2016/05/20/2","https://www.cve.org/CVERecord?id=CVE-2016-4440"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=824856","https://bugzilla.redhat.com/show_bug.cgi?id=1337806","https://launchpad.net/bugs/1584192"],"patches":{"linux":["break-fix: 5c919412fe61c35947816fdbd5f7bd09fe0dd073 3ce424e45411cf5a13105e0386b6ecf6eeb4f66f"],"linux-ti-omap4":[],"linux-linaro-omap":[],"linux-linaro-shared":[],"linux-linaro-vexpress":[],"linux-qcm-msm":[],"linux-armadaxp":[],"linux-lts-quantal":[],"linux-lts-raring":[],"linux-lts-saucy":[],"linux-lts-trusty":[],"linux-goldfish":[],"linux-grouper":[],"linux-maguro":[],"linux-mako":[],"linux-manta":[],"linux-flo":[],"linux-raspi2":[],"linux-lts-utopic":[],"linux-lts-vivid":[],"linux-lts-wily":[],"linux-lts-xenial":[],"linux-snapdragon":[],"linux-aws":[],"linux-hwe-edge":[],"linux-hwe":[],"linux-gke":[]},"tags":{"linux":["binary-exclude:linux-libc-dev"],"linux-armadaxp":["not-ue"],"linux-lts-quantal":["not-ue"],"linux-lts-saucy":["not-ue"]},"packages":[{"name":"linux","source":"https://ubuntu.com/security/cve?package=linux","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux","debian":"https://tracker.debian.org/pkg/linux","statuses":[{"release_codename":"upstream","status":"released","description":"4.7~rc1","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.4.0-34.53","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"not-affected","description":"4.4.0-33.52","component":null,"pocket":"security"}]},{"name":"linux-armadaxp","source":"https://ubuntu.com/security/cve?package=linux-armadaxp","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-armadaxp","debian":"https://tracker.debian.org/pkg/linux-armadaxp","statuses":[{"release_codename":"upstream","status":"released","description":"4.7~rc1","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-aws","source":"https://ubuntu.com/security/cve?package=linux-aws","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-aws","debian":"https://tracker.debian.org/pkg/linux-aws","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"4.4.0-1002.2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.4.0-1001.10","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc1","component":null,"pocket":"security"}]},{"name":"linux-flo","source":"https://ubuntu.com/security/cve?package=linux-flo","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-flo","debian":"https://tracker.debian.org/pkg/linux-flo","statuses":[{"release_codename":"wily","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc1","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored","component":null,"pocket":"security"}]},{"name":"linux-gke","source":"https://ubuntu.com/security/cve?package=linux-gke","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-gke","debian":"https://tracker.debian.org/pkg/linux-gke","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.4.0-1003.3","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc1","component":null,"pocket":"security"}]},{"name":"linux-goldfish","source":"https://ubuntu.com/security/cve?package=linux-goldfish","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-goldfish","debian":"https://tracker.debian.org/pkg/linux-goldfish","statuses":[{"release_codename":"upstream","status":"released","description":"4.7~rc1","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored","component":null,"pocket":"security"}]},{"name":"linux-grouper","source":"https://ubuntu.com/security/cve?package=linux-grouper","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-grouper","debian":"https://tracker.debian.org/pkg/linux-grouper","statuses":[{"release_codename":"upstream","status":"released","description":"4.7~rc1","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored","component":null,"pocket":"security"}]},{"name":"linux-hwe","source":"https://ubuntu.com/security/cve?package=linux-hwe","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-hwe","debian":"https://tracker.debian.org/pkg/linux-hwe","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.8.0-36.36~16.04.1","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc1","component":null,"pocket":"security"}]},{"name":"linux-hwe-edge","source":"https://ubuntu.com/security/cve?package=linux-hwe-edge","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-hwe-edge","debian":"https://tracker.debian.org/pkg/linux-hwe-edge","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.8.0-36.36~16.04.1","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc1","component":null,"pocket":"security"}]},{"name":"linux-linaro-omap","source":"https://ubuntu.com/security/cve?package=linux-linaro-omap","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-linaro-omap","debian":"https://tracker.debian.org/pkg/linux-linaro-omap","statuses":[{"release_codename":"upstream","status":"released","description":"4.7~rc1","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-linaro-shared","source":"https://ubuntu.com/security/cve?package=linux-linaro-shared","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-linaro-shared","debian":"https://tracker.debian.org/pkg/linux-linaro-shared","statuses":[{"release_codename":"upstream","status":"released","description":"4.7~rc1","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-linaro-vexpress","source":"https://ubuntu.com/security/cve?package=linux-linaro-vexpress","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-linaro-vexpress","debian":"https://tracker.debian.org/pkg/linux-linaro-vexpress","statuses":[{"release_codename":"upstream","status":"released","description":"4.7~rc1","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-lts-quantal","source":"https://ubuntu.com/security/cve?package=linux-lts-quantal","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-quantal","debian":"https://tracker.debian.org/pkg/linux-lts-quantal","statuses":[{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc1","component":null,"pocket":"security"}]},{"name":"linux-lts-raring","source":"https://ubuntu.com/security/cve?package=linux-lts-raring","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-raring","debian":"https://tracker.debian.org/pkg/linux-lts-raring","statuses":[{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc1","component":null,"pocket":"security"}]},{"name":"linux-lts-saucy","source":"https://ubuntu.com/security/cve?package=linux-lts-saucy","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-saucy","debian":"https://tracker.debian.org/pkg/linux-lts-saucy","statuses":[{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc1","component":null,"pocket":"security"}]},{"name":"linux-lts-trusty","source":"https://ubuntu.com/security/cve?package=linux-lts-trusty","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-trusty","debian":"https://tracker.debian.org/pkg/linux-lts-trusty","statuses":[{"release_codename":"precise","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc1","component":null,"pocket":"security"}]},{"name":"linux-lts-utopic","source":"https://ubuntu.com/security/cve?package=linux-lts-utopic","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-utopic","debian":"https://tracker.debian.org/pkg/linux-lts-utopic","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was not-affected","component":null,"pocket":"security"}]},{"name":"linux-lts-vivid","source":"https://ubuntu.com/security/cve?package=linux-lts-vivid","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-vivid","debian":"https://tracker.debian.org/pkg/linux-lts-vivid","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was not-affected","component":null,"pocket":"security"}]},{"name":"linux-lts-wily","source":"https://ubuntu.com/security/cve?package=linux-lts-wily","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-wily","debian":"https://tracker.debian.org/pkg/linux-lts-wily","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was not-affected","component":null,"pocket":"security"}]},{"name":"linux-lts-xenial","source":"https://ubuntu.com/security/cve?package=linux-lts-xenial","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-xenial","debian":"https://tracker.debian.org/pkg/linux-lts-xenial","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"4.4.0-34.53~14.04.1","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc1","component":null,"pocket":"security"}]},{"name":"linux-maguro","source":"https://ubuntu.com/security/cve?package=linux-maguro","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-maguro","debian":"https://tracker.debian.org/pkg/linux-maguro","statuses":[{"release_codename":"upstream","status":"released","description":"4.7~rc1","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored","component":null,"pocket":"security"}]},{"name":"linux-mako","source":"https://ubuntu.com/security/cve?package=linux-mako","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-mako","debian":"https://tracker.debian.org/pkg/linux-mako","statuses":[{"release_codename":"upstream","status":"released","description":"4.7~rc1","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored","component":null,"pocket":"security"}]},{"name":"linux-manta","source":"https://ubuntu.com/security/cve?package=linux-manta","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-manta","debian":"https://tracker.debian.org/pkg/linux-manta","statuses":[{"release_codename":"upstream","status":"released","description":"4.7~rc1","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored","component":null,"pocket":"security"}]},{"name":"linux-qcm-msm","source":"https://ubuntu.com/security/cve?package=linux-qcm-msm","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-qcm-msm","debian":"https://tracker.debian.org/pkg/linux-qcm-msm","statuses":[{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc1","component":null,"pocket":"security"}]},{"name":"linux-raspi2","source":"https://ubuntu.com/security/cve?package=linux-raspi2","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-raspi2","debian":"https://tracker.debian.org/pkg/linux-raspi2","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.4.0-1019.25","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"not-affected","description":"4.8.0-1012.14","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc1","component":null,"pocket":"security"}]},{"name":"linux-snapdragon","source":"https://ubuntu.com/security/cve?package=linux-snapdragon","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-snapdragon","debian":"https://tracker.debian.org/pkg/linux-snapdragon","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.4.0-1022.25","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"not-affected","description":"4.4.0-1022.25","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc1","component":null,"pocket":"security"}]},{"name":"linux-ti-omap4","source":"https://ubuntu.com/security/cve?package=linux-ti-omap4","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-ti-omap4","debian":"https://tracker.debian.org/pkg/linux-ti-omap4","statuses":[{"release_codename":"precise","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.7~rc1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2016-3707","published":"2016-06-27T10:59:00","updated_at":"2025-08-25T21:59:56.474755+00:00","description":"\nThe icmp_check_sysrq function in net/ipv4/icmp.c in the kernel.org\nprojects/rt patches for the Linux kernel, as used in the kernel-rt package\nbefore 3.10.0-327.22.1 in Red Hat Enterprise Linux for Real Time 7 and\nother products, allows remote attackers to execute SysRq commands via\ncrafted ICMP Echo Request packets, as demonstrated by a brute-force attack\nto discover a cookie, or an attack that occurs after reading the local\nicmp_echo_sysrq file.","ubuntu_description":"","notes":[{"author":"sbeattie","note":"only affects kernels with PREEMPT_RT applied and enabled,\nwhich is not the case in Ubuntu kernels."}],"codename":null,"priority":"medium","cvss3":8.1,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"HIGH","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":8.1,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://lwn.net/Articles/448790/","https://bugzilla.redhat.com/show_bug.cgi?id=1327484","http://lists.opensuse.org/opensuse-security-announce/2016-07/msg00005.html","http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00000.html","http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00007.html","http://www.openwall.com/lists/oss-security/2016/05/17/1","https://access.redhat.com/errata/RHSA-2016:1301","https://access.redhat.com/errata/RHSA-2016:1341","https://www.cve.org/CVERecord?id=CVE-2016-3707"],"bugs":[""],"patches":{"linux":[],"linux-hwe":[],"linux-hwe-edge":[],"linux-lts-trusty":[],"linux-lts-xenial":[],"linux-kvm":[],"linux-aws":[],"linux-aws-5.0":[],"linux-aws-5.3":[],"linux-aws-hwe":[],"linux-azure":[],"linux-azure-4.15":[],"linux-azure-5.3":[],"linux-azure-edge":[],"linux-gcp":[],"linux-gcp-5.3":[],"linux-gcp-edge":[],"linux-gke-4.15":[],"linux-gke-5.0":[],"linux-gke-5.3":[],"linux-oracle":[],"linux-oracle-5.0":[],"linux-oracle-5.3":[],"linux-oem":[],"linux-oem-5.6":[],"linux-oem-osp1":[],"linux-raspi":[],"linux-raspi2":[],"linux-raspi2-5.3":[],"linux-riscv":[],"linux-snapdragon":[]},"tags":{},"packages":[{"name":"linux","source":"https://ubuntu.com/security/cve?package=linux","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux","debian":"https://tracker.debian.org/pkg/linux","statuses":[{"release_codename":"bionic","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"}]},{"name":"linux-aws","source":"https://ubuntu.com/security/cve?package=linux-aws","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-aws","debian":"https://tracker.debian.org/pkg/linux-aws","statuses":[{"release_codename":"bionic","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"}]},{"name":"linux-aws-5.0","source":"https://ubuntu.com/security/cve?package=linux-aws-5.0","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-aws-5.0","debian":"https://tracker.debian.org/pkg/linux-aws-5.0","statuses":[{"release_codename":"bionic","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-aws-5.3","source":"https://ubuntu.com/security/cve?package=linux-aws-5.3","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-aws-5.3","debian":"https://tracker.debian.org/pkg/linux-aws-5.3","statuses":[{"release_codename":"bionic","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-aws-hwe","source":"https://ubuntu.com/security/cve?package=linux-aws-hwe","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-aws-hwe","debian":"https://tracker.debian.org/pkg/linux-aws-hwe","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"}]},{"name":"linux-azure","source":"https://ubuntu.com/security/cve?package=linux-azure","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-azure","debian":"https://tracker.debian.org/pkg/linux-azure","statuses":[{"release_codename":"bionic","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"}]},{"name":"linux-azure-4.15","source":"https://ubuntu.com/security/cve?package=linux-azure-4.15","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-azure-4.15","debian":"https://tracker.debian.org/pkg/linux-azure-4.15","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-azure-5.3","source":"https://ubuntu.com/security/cve?package=linux-azure-5.3","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-azure-5.3","debian":"https://tracker.debian.org/pkg/linux-azure-5.3","statuses":[{"release_codename":"bionic","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-azure-edge","source":"https://ubuntu.com/security/cve?package=linux-azure-edge","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-azure-edge","debian":"https://tracker.debian.org/pkg/linux-azure-edge","statuses":[{"release_codename":"bionic","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-gcp","source":"https://ubuntu.com/security/cve?package=linux-gcp","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-gcp","debian":"https://tracker.debian.org/pkg/linux-gcp","statuses":[{"release_codename":"bionic","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"}]},{"name":"linux-gcp-5.3","source":"https://ubuntu.com/security/cve?package=linux-gcp-5.3","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-gcp-5.3","debian":"https://tracker.debian.org/pkg/linux-gcp-5.3","statuses":[{"release_codename":"bionic","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-gcp-edge","source":"https://ubuntu.com/security/cve?package=linux-gcp-edge","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-gcp-edge","debian":"https://tracker.debian.org/pkg/linux-gcp-edge","statuses":[{"release_codename":"bionic","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-gke-4.15","source":"https://ubuntu.com/security/cve?package=linux-gke-4.15","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-gke-4.15","debian":"https://tracker.debian.org/pkg/linux-gke-4.15","statuses":[{"release_codename":"bionic","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-gke-5.0","source":"https://ubuntu.com/security/cve?package=linux-gke-5.0","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-gke-5.0","debian":"https://tracker.debian.org/pkg/linux-gke-5.0","statuses":[{"release_codename":"bionic","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-gke-5.3","source":"https://ubuntu.com/security/cve?package=linux-gke-5.3","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-gke-5.3","debian":"https://tracker.debian.org/pkg/linux-gke-5.3","statuses":[{"release_codename":"bionic","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-hwe","source":"https://ubuntu.com/security/cve?package=linux-hwe","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-hwe","debian":"https://tracker.debian.org/pkg/linux-hwe","statuses":[{"release_codename":"bionic","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"}]},{"name":"linux-hwe-edge","source":"https://ubuntu.com/security/cve?package=linux-hwe-edge","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-hwe-edge","debian":"https://tracker.debian.org/pkg/linux-hwe-edge","statuses":[{"release_codename":"bionic","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"}]},{"name":"linux-kvm","source":"https://ubuntu.com/security/cve?package=linux-kvm","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-kvm","debian":"https://tracker.debian.org/pkg/linux-kvm","statuses":[{"release_codename":"bionic","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"}]},{"name":"linux-lts-trusty","source":"https://ubuntu.com/security/cve?package=linux-lts-trusty","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-trusty","debian":"https://tracker.debian.org/pkg/linux-lts-trusty","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-lts-xenial","source":"https://ubuntu.com/security/cve?package=linux-lts-xenial","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-xenial","debian":"https://tracker.debian.org/pkg/linux-lts-xenial","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-oem","source":"https://ubuntu.com/security/cve?package=linux-oem","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-oem","debian":"https://tracker.debian.org/pkg/linux-oem","statuses":[{"release_codename":"bionic","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"}]},{"name":"linux-oem-5.6","source":"https://ubuntu.com/security/cve?package=linux-oem-5.6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-oem-5.6","debian":"https://tracker.debian.org/pkg/linux-oem-5.6","statuses":[{"release_codename":"upstream","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-oem-osp1","source":"https://ubuntu.com/security/cve?package=linux-oem-osp1","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-oem-osp1","debian":"https://tracker.debian.org/pkg/linux-oem-osp1","statuses":[{"release_codename":"bionic","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-oracle","source":"https://ubuntu.com/security/cve?package=linux-oracle","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-oracle","debian":"https://tracker.debian.org/pkg/linux-oracle","statuses":[{"release_codename":"bionic","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"}]},{"name":"linux-oracle-5.0","source":"https://ubuntu.com/security/cve?package=linux-oracle-5.0","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-oracle-5.0","debian":"https://tracker.debian.org/pkg/linux-oracle-5.0","statuses":[{"release_codename":"bionic","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-oracle-5.3","source":"https://ubuntu.com/security/cve?package=linux-oracle-5.3","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-oracle-5.3","debian":"https://tracker.debian.org/pkg/linux-oracle-5.3","statuses":[{"release_codename":"bionic","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-raspi","source":"https://ubuntu.com/security/cve?package=linux-raspi","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-raspi","debian":"https://tracker.debian.org/pkg/linux-raspi","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-raspi2","source":"https://ubuntu.com/security/cve?package=linux-raspi2","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-raspi2","debian":"https://tracker.debian.org/pkg/linux-raspi2","statuses":[{"release_codename":"xenial","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"}]},{"name":"linux-raspi2-5.3","source":"https://ubuntu.com/security/cve?package=linux-raspi2-5.3","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-raspi2-5.3","debian":"https://tracker.debian.org/pkg/linux-raspi2-5.3","statuses":[{"release_codename":"bionic","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-riscv","source":"https://ubuntu.com/security/cve?package=linux-riscv","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-riscv","debian":"https://tracker.debian.org/pkg/linux-riscv","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-snapdragon","source":"https://ubuntu.com/security/cve?package=linux-snapdragon","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-snapdragon","debian":"https://tracker.debian.org/pkg/linux-snapdragon","statuses":[{"release_codename":"bionic","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"rt kernels only","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]}],"offset":60500,"limit":20,"total_results":79316}